A malicious or compromised IMAP server can trigger an out-of-bounds read in the IMAP response parser by sending an untagged '* ID' response, crashing Thunderbird. The affected parsing path is reachab…
严重 CVSS 9.1
摘要
A malicious or compromised IMAP server can trigger an out-of-bounds read in the IMAP response parser by sending an untagged '* ID' response, crashing Thunderbird. The affected parsing path is reachable before authentication. This vulnerability was fixed in Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
中文摘要建设中,暂以英文摘要呈现(DR-003 v2)。
深度研判
该漏洞尚未生成深度研判报告(DR-003 v2 AI pipeline 建设中)。
数据来源
- NVD DATABASE
原始链接
- https://bugzilla.mozilla.org/show_bug.cgi?id=2069113
- https://www.mozilla.org/security/advisories/mfsa2026-94/
- https://www.mozilla.org/security/advisories/mfsa2026-95/
- https://www.mozilla.org/security/advisories/mfsa2026-96/
时间线
- nvd_ingest NVD