KLA11502
Multiple vulnerabilities in Mozilla Thunderbird
Updated: 06/26/2019
Detect date
?
06/13/2019
Severity
?
High
Description

Multiple vulnerabilities were found in Mozilla Thunderbird. Malicious users can exploit these vulnerabilities to cause denial of service.

Below is a complete list of vulnerabilities:

  1. Heap buffer overflow vulnerability related to icalparser.c can be exploited to cause denial of service;
  2. Heap buffer overflow vulnerability related to icalvalue.c can be exploited to cause denial of service;
  3. Stack buffer overflow vulnerability related to icalrecur.c can be exploited to cause denial of service;
  4. Type confusion vulnerability related to icalproperty.c can be exploited to cause denial of service;
Affected products

Mozilla Thunderbird earlier than 60.7.1

Solution

Update to the latest version
Download Mozilla Thunderbird

Original advisories

Mozilla Foundation Security Advisory 2019-17

Impacts
?
DoS 
[?]
Related products
Mozilla Thunderbird
CVE-IDS
?
CVE-2019-117030.0Unknown
CVE-2019-117040.0Unknown
CVE-2019-117050.0Unknown
CVE-2019-117060.0Unknown