Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24529
HistoryApr 10, 2020 - 12:56 a.m.

Arbitrary Code Execution

2020-04-1000:56:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
36

EPSS

0.186

Percentile

96.3%

thunderbird is vulnerable to arbitrary code execution. The vulnerability exists as a double free flaw was found in the way Thunderbird handled “application/http-index-format” documents. A malformed HTTP response could cause Thunderbird to execute arbitrary code with the privileges of the user running Thunderbird.