KLA11502
Multiple vulnerabilities in Mozilla Thunderbird

Updated: 06/03/2020
Detect date
?
06/13/2019
Severity
?
High
Description

Multiple vulnerabilities were found in Mozilla Thunderbird. Malicious users can exploit these vulnerabilities to cause denial of service.

Below is a complete list of vulnerabilities:

  1. Heap buffer overflow vulnerability related to icalparser.c can be exploited to cause denial of service;
  2. Heap buffer overflow vulnerability related to icalvalue.c can be exploited to cause denial of service;
  3. Stack buffer overflow vulnerability related to icalrecur.c can be exploited to cause denial of service;
  4. Type confusion vulnerability related to icalproperty.c can be exploited to cause denial of service;
Affected products

Mozilla Thunderbird earlier than 60.7.1

Solution

Update to the latest version
Download Mozilla Thunderbird

Original advisories

Mozilla Foundation Security Advisory 2019-17

Impacts
?
DoS 
[?]
Related products
Mozilla Thunderbird
CVE-IDS
?
CVE-2019-117037.5Critical
CVE-2019-117047.5Critical
CVE-2019-117057.5Critical
CVE-2019-117065.0Critical
Find out the statistics of the vulnerabilities spreading in your region