CVE-2009-2210Mozilla Seamonkey vulnerability

5 documents5 sources
Severity
9.3CRITICALNVD
EPSS
5.5%
top 9.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 25
Latest updateMay 2

Description

Mozilla Thunderbird before 2.0.0.22 and SeaMonkey before 1.1.17 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a multipart/alternative e-mail message containing a text/enhanced part that triggers access to an incorrect object type.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages2 packages

NVDmozilla/seamonkey1.1.16+30
NVDmozilla/thunderbird2.0.0.21+68

Patches

🔴Vulnerability Details

2
GHSA
GHSA-xmgw-g27r-xxpm: Mozilla Thunderbird before 22022-05-02
CVEList
CVE-2009-2210: Mozilla Thunderbird before 22009-06-25

📋Vendor Advisories

1
Red Hat
Thunderbird mail crash2009-06-22

💬Community

1
Bugzilla
CVE-2009-2210 Thunderbird mail crash2009-06-24
CVE-2009-2210 — Mozilla Seamonkey vulnerability | cvebase