๐Ÿ” CVE Alert

CVE-2023-0616

MEDIUM 6.5
CVSS Score
6.5
EPSS Score
0.0%
EPSS Percentile
0th

If a MIME email combines OpenPGP and OpenPGP MIME data in a certain way Thunderbird repeatedly attempts to process and display the message, which could cause Thunderbird's user interface to lock up and no longer respond to the user's actions. An attacker could send a crafted message with this structure to attempt a DoS attack. This vulnerability affects Thunderbird < 102.8.

Vendor mozilla
Product thunderbird
Ecosystems
Industries
Technology
Published Jun 2, 2023
Last Updated Jan 10, 2025
Stay Ahead of the Next One

Get instant alerts for mozilla thunderbird

Be the first to know when new medium vulnerabilities affecting mozilla thunderbird are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Mozilla / Thunderbird
unspecified < 102.8

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
mozilla.org: https://www.mozilla.org/security/advisories/mfsa2023-07/ bugzilla.mozilla.org: https://bugzilla.mozilla.org/show_bug.cgi?id=1806507