Логотип exploitDog
bind:"BDU:2024-02159" OR bind:"CVE-2024-1936"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2024-02159" OR bind:"CVE-2024-1936"

Количество 12

Количество 12

fstec логотип

BDU:2024-02159

около 2 лет назад

Уязвимость почтового клиента Mozilla Thunderbird, связанная с ошибками присвоения зашифрованной темы электронного письма произвольному другому электронному сообщению в локальном кэше, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 3.1
EPSS: Низкий
ubuntu логотип

CVE-2024-1936

около 2 лет назад

The encrypted subject of an email message could be incorrectly and permanently assigned to an arbitrary other email message in Thunderbird's local cache. Consequently, when replying to the contaminated email message, the user might accidentally leak the confidential subject to a third-party. While this update fixes the bug and avoids future message contamination, it does not automatically repair existing contaminations. Users are advised to use the repair folder functionality, which is available from the context menu of email folders, which will erase incorrect subject assignments. This vulnerability affects Thunderbird < 115.8.1.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2024-1936

около 2 лет назад

The encrypted subject of an email message could be incorrectly and permanently assigned to an arbitrary other email message in Thunderbird's local cache. Consequently, when replying to the contaminated email message, the user might accidentally leak the confidential subject to a third-party. While this update fixes the bug and avoids future message contamination, it does not automatically repair existing contaminations. Users are advised to use the repair folder functionality, which is available from the context menu of email folders, which will erase incorrect subject assignments. This vulnerability affects Thunderbird < 115.8.1.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-1936

около 2 лет назад

The encrypted subject of an email message could be incorrectly and permanently assigned to an arbitrary other email message in Thunderbird's local cache. Consequently, when replying to the contaminated email message, the user might accidentally leak the confidential subject to a third-party. While this update fixes the bug and avoids future message contamination, it does not automatically repair existing contaminations. Users are advised to use the repair folder functionality, which is available from the context menu of email folders, which will erase incorrect subject assignments. This vulnerability affects Thunderbird < 115.8.1.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-1936

около 2 лет назад

The encrypted subject of an email message could be incorrectly and per ...

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20240923-08

больше 1 года назад

Множественные уязвимости thunderbird

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0893-1

около 2 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
github логотип

GHSA-8v87-67f4-56h2

около 2 лет назад

The encrypted subject of an email message could be incorrectly and permanently assigned to an arbitrary other email message in Thunderbird's local cache. Consequently, when replying to the contaminated email message, the user might accidentally leak the confidential subject to a third party. While this update fixes the bug and avoids future message contamination, it does not automatically repair existing contaminations. Users are advised to use the repair folder functionality, which is available from the context menu of email folders, which will erase incorrect subject assignments. This vulnerability affects Thunderbird < 115.8.1.

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2024:1494

около 2 лет назад

Moderate: thunderbird security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-1498

около 2 лет назад

ELSA-2024-1498: thunderbird security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-1494

около 2 лет назад

ELSA-2024-1494: thunderbird security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-1493

около 2 лет назад

ELSA-2024-1493: thunderbird security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-02159

Уязвимость почтового клиента Mozilla Thunderbird, связанная с ошибками присвоения зашифрованной темы электронного письма произвольному другому электронному сообщению в локальном кэше, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 3.1
0%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2024-1936

The encrypted subject of an email message could be incorrectly and permanently assigned to an arbitrary other email message in Thunderbird's local cache. Consequently, when replying to the contaminated email message, the user might accidentally leak the confidential subject to a third-party. While this update fixes the bug and avoids future message contamination, it does not automatically repair existing contaminations. Users are advised to use the repair folder functionality, which is available from the context menu of email folders, which will erase incorrect subject assignments. This vulnerability affects Thunderbird < 115.8.1.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
redhat логотип
CVE-2024-1936

The encrypted subject of an email message could be incorrectly and permanently assigned to an arbitrary other email message in Thunderbird's local cache. Consequently, when replying to the contaminated email message, the user might accidentally leak the confidential subject to a third-party. While this update fixes the bug and avoids future message contamination, it does not automatically repair existing contaminations. Users are advised to use the repair folder functionality, which is available from the context menu of email folders, which will erase incorrect subject assignments. This vulnerability affects Thunderbird < 115.8.1.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
nvd логотип
CVE-2024-1936

The encrypted subject of an email message could be incorrectly and permanently assigned to an arbitrary other email message in Thunderbird's local cache. Consequently, when replying to the contaminated email message, the user might accidentally leak the confidential subject to a third-party. While this update fixes the bug and avoids future message contamination, it does not automatically repair existing contaminations. Users are advised to use the repair folder functionality, which is available from the context menu of email folders, which will erase incorrect subject assignments. This vulnerability affects Thunderbird < 115.8.1.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
debian логотип
CVE-2024-1936

The encrypted subject of an email message could be incorrectly and per ...

CVSS3: 7.5
0%
Низкий
около 2 лет назад
redos логотип
ROS-20240923-08

Множественные уязвимости thunderbird

CVSS3: 8.8
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0893-1

Security update for MozillaThunderbird

0%
Низкий
около 2 лет назад
github логотип
GHSA-8v87-67f4-56h2

The encrypted subject of an email message could be incorrectly and permanently assigned to an arbitrary other email message in Thunderbird's local cache. Consequently, when replying to the contaminated email message, the user might accidentally leak the confidential subject to a third party. While this update fixes the bug and avoids future message contamination, it does not automatically repair existing contaminations. Users are advised to use the repair folder functionality, which is available from the context menu of email folders, which will erase incorrect subject assignments. This vulnerability affects Thunderbird < 115.8.1.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
rocky логотип
RLSA-2024:1494

Moderate: thunderbird security update

около 2 лет назад
oracle-oval логотип
ELSA-2024-1498

ELSA-2024-1498: thunderbird security update (MODERATE)

около 2 лет назад
oracle-oval логотип
ELSA-2024-1494

ELSA-2024-1494: thunderbird security update (MODERATE)

около 2 лет назад
oracle-oval логотип
ELSA-2024-1493

ELSA-2024-1493: thunderbird security update (MODERATE)

около 2 лет назад

Уязвимостей на страницу