[MFSA-2023-18] Security Vulnerabilities fixed in Thunderbird 102.11

Severity High
Affected Packages 1
Fixed Packages 1
CVEs 8
  • CVE-2023-32205: Browser prompts could have been obscured by popups (high)
    In multiple cases browser prompts could have been obscured by popups controlled by content. These could have led to potential user confusion and spoofing attacks.

  • CVE-2023-32206: Crash in RLBox Expat driver (high)
    An out-of-bound read could have led to a crash in the RLBox Expat driver.

  • CVE-2023-32207: Potential permissions request bypass via clickjacking (high)
    A missing delay in popup notifications could have made it possible for an attacker to trick a user into granting permissions.

  • CVE-2023-32211: Content process crash due to invalid wasm code (moderate)
    A type checking bug would have led to invalid code being compiled.

  • CVE-2023-32212: Potential spoof due to obscured address bar (moderate)
    An attacker could have positioned a <code>datalist</code> element to obscure the address bar.

  • CVE-2023-32213: Potential memory corruption in FileReader::DoReadData() (moderate)
    When reading a file, an uninitialized value could have been used as read limit.

  • CVE-2023-32214: Potential DoS via exposed protocol handlers (low)
    Protocol handlers <code>ms-cxh</code> and <code>ms-cxh-full</code> could have been leveraged to trigger a denial of service.
    Note: This attack only affects Windows. Other operating systems are not affected.

  • CVE-2023-32215: Memory safety bugs fixed in Thunderbird 102.11 (high)
    Mozilla developers and community members Gabriele Svelto, Andrew Osmond, Emily McDonough, Sebastian Hengst, Andrew McCreight and the Mozilla Fuzzing Team reported memory safety bugs present in Thunderbird 102.10. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.

Package Affected Version
pkg:mozilla/Thunderbird < 102.11
Package Fixed Version
pkg:mozilla/Thunderbird = 102.11
Source # ID Name URL
Bugzilla 1753339 https://bugzilla.mozilla.org/show_bug.cgi?id=1753339
Bugzilla 1753341 https://bugzilla.mozilla.org/show_bug.cgi?id=1753341
Bugzilla 1824892 https://bugzilla.mozilla.org/show_bug.cgi?id=1824892
Bugzilla 1826116 https://bugzilla.mozilla.org/show_bug.cgi?id=1826116
Bugzilla 1823379 https://bugzilla.mozilla.org/show_bug.cgi?id=1823379
Bugzilla 1826622 https://bugzilla.mozilla.org/show_bug.cgi?id=1826622
Bugzilla 1826666 https://bugzilla.mozilla.org/show_bug.cgi?id=1826666
Bugzilla 1828716 https://bugzilla.mozilla.org/show_bug.cgi?id=1828716
Bugzilla 1540883 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1540883
Bugzilla 1751943 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1751943
Bugzilla 1814856 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1814856
Bugzilla 1820210 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1820210
Bugzilla 1821480 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1821480
Bugzilla 1827019 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1827019
Bugzilla 1827024 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1827024
Bugzilla 1827144 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1827144
Bugzilla 1827359 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1827359
Bugzilla 1830186 Memory safety bugs fixed in Thunderbird 102.11 https://bugzilla.mozilla.org/show_bug.cgi?id=1830186
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:mozilla/Thunderbird Thunderbird < 102.11
Fixed pkg:mozilla/Thunderbird Thunderbird = 102.11
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...