Логотип exploitDog
bind:CVE-2021-23991
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-23991

Количество 10

Количество 10

ubuntu логотип

CVE-2021-23991

больше 4 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
EPSS: Низкий
redhat логотип

CVE-2021-23991

почти 5 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
EPSS: Низкий
nvd логотип

CVE-2021-23991

больше 4 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
EPSS: Низкий
debian логотип

CVE-2021-23991

больше 4 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and ...

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-x5j6-p8w8-5r65

больше 3 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

EPSS: Низкий
fstec логотип

BDU:2021-02077

около 5 лет назад

Уязвимость почтового клиента Thunderbird, связанная c некорректной проверкой криптографической подписи OpenPGP, позволяющая нарушителю получить доступ к защищаемой информации

CVSS3: 4.2
EPSS: Низкий
oracle-oval логотип

ELSA-2021-1193

почти 5 лет назад

ELSA-2021-1193: thunderbird security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2021-1192

почти 5 лет назад

ELSA-2021-1192: thunderbird security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1167-1

почти 5 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:0580-1

почти 5 лет назад

Security update for MozillaThunderbird

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-23991

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
0%
Низкий
больше 4 лет назад
redhat логотип
CVE-2021-23991

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
0%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-23991

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-23991

If a Thunderbird user has previously imported Alice's OpenPGP key, and ...

CVSS3: 6.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-x5j6-p8w8-5r65

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-02077

Уязвимость почтового клиента Thunderbird, связанная c некорректной проверкой криптографической подписи OpenPGP, позволяющая нарушителю получить доступ к защищаемой информации

CVSS3: 4.2
0%
Низкий
около 5 лет назад
oracle-oval логотип
ELSA-2021-1193

ELSA-2021-1193: thunderbird security update (MODERATE)

почти 5 лет назад
oracle-oval логотип
ELSA-2021-1192

ELSA-2021-1192: thunderbird security update (MODERATE)

почти 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1167-1

Security update for MozillaThunderbird

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2021:0580-1

Security update for MozillaThunderbird

почти 5 лет назад

Уязвимостей на страницу