ZeroHour

CVE-2021-29957

PoC
CVSS 3.1
4.3 medium
EPSS
<1%p59
Published
()
Modified
Description

If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unprotected part, Thunderbird did not indicate that only parts of the message are protected. This vulnerability affects Thunderbird < 78.10.2.

Vendors
mozilla
Products
thunderbird
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.