Lucene search

K
f5F5F5:K000130509
HistoryJan 06, 2023 - 12:00 a.m.

K000130509 : Thunderbird vulnerability CVE-2021-43529

2023-01-0600:00:00
my.f5.com
42
thunderbird
vulnerability
heap overflow
cve-2021-43529
s/mime
der-encoded
rsa-pss
certificates

AI Score

9.7

Confidence

High

EPSS

0.008

Percentile

81.4%

Security Advisory Description

Thunderbird versions prior to 91.3.0 are vulnerable to the heap overflow described in CVE-2021-43527 when processing S/MIME messages. Thunderbird versions 91.3.0 and later will not call the vulnerable code when processing S/MIME messages that contain certificates with DER-encoded DSA or RSA-PSS signatures. (CVE-2021-43529)

Impact

There is no impact; F5 products are not affected by this vulnerability.