Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 10

Количество 10

ubuntu логотип

CVE-2021-23991

около 5 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
EPSS: Низкий
redhat логотип

CVE-2021-23991

больше 5 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
EPSS: Низкий
nvd логотип

CVE-2021-23991

около 5 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
EPSS: Низкий
debian логотип

CVE-2021-23991

около 5 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and ...

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-x5j6-p8w8-5r65

около 4 лет назад

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

EPSS: Низкий
fstec логотип

BDU:2021-02077

больше 5 лет назад

Уязвимость почтового клиента Thunderbird, связанная c некорректной проверкой криптографической подписи OpenPGP, позволяющая нарушителю получить доступ к защищаемой информации

CVSS3: 4.2
EPSS: Низкий
oracle-oval логотип

ELSA-2021-1193

больше 5 лет назад

ELSA-2021-1193: thunderbird security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2021-1192

больше 5 лет назад

ELSA-2021-1192: thunderbird security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1167-1

больше 5 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:0580-1

больше 5 лет назад

Security update for MozillaThunderbird

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-23991

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
1%
Низкий
около 5 лет назад
redhat логотип
CVE-2021-23991

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
1%
Низкий
больше 5 лет назад
nvd логотип
CVE-2021-23991

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.8
1%
Низкий
около 5 лет назад
debian логотип
CVE-2021-23991

If a Thunderbird user has previously imported Alice's OpenPGP key, and ...

CVSS3: 6.8
1%
Низкий
около 5 лет назад
github логотип
GHSA-x5j6-p8w8-5r65

If a Thunderbird user has previously imported Alice's OpenPGP key, and Alice has extended the validity period of her key, but Alice's updated key has not yet been imported, an attacker may send an email containing a crafted version of Alice's key with an invalid subkey, Thunderbird might subsequently attempt to use the invalid subkey, and will fail to send encrypted email to Alice. This vulnerability affects Thunderbird < 78.9.1.

1%
Низкий
около 4 лет назад
fstec логотип
BDU:2021-02077

Уязвимость почтового клиента Thunderbird, связанная c некорректной проверкой криптографической подписи OpenPGP, позволяющая нарушителю получить доступ к защищаемой информации

CVSS3: 4.2
1%
Низкий
больше 5 лет назад
oracle-oval логотип
ELSA-2021-1193

ELSA-2021-1193: thunderbird security update (MODERATE)

больше 5 лет назад
oracle-oval логотип
ELSA-2021-1192

ELSA-2021-1192: thunderbird security update (MODERATE)

больше 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1167-1

Security update for MozillaThunderbird

больше 5 лет назад
suse-cvrf логотип
openSUSE-SU-2021:0580-1

Security update for MozillaThunderbird

больше 5 лет назад

Уязвимостей на страницу