Lucene search

K
mozillaMozilla FoundationMFSA2022-31
HistoryJul 28, 2022 - 12:00 a.m.

Security Vulnerabilities fixed in Thunderbird 91.12 — Mozilla

2022-07-2800:00:00
Mozilla Foundation
www.mozilla.org
194

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

0.002 Low

EPSS

Percentile

55.1%

When combining CSS properties for overflow and transform, the mouse cursor could interact with different coordinates than displayed.
When visiting directory listings for chrome:// URLs as source text, some parameters were reflected.

Affected configurations

Vulners
Node
mozillathunderbirdRange<91.12
CPENameOperatorVersion
thunderbirdlt91.12

7.5 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

0.002 Low

EPSS

Percentile

55.1%