CVE-2019-11739
published 2019-09-27CVE-2019-11739: Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward. This vulnerability affects…
PriorityP426medium6.5CVSS 3.1
AVNACLPRNUIRSUCHINAN
EPSS
0.90%
55.9th percentile
Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 68.1 and Thunderbird < 60.9.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | thunderbird | < thunderbird 1:60.9.0-1 (bookworm) | thunderbird 1:60.9.0-1 (bookworm) |
| mozilla | thunderbird | < 60.9.0 | 60.9.0 |
| mozilla | thunderbird | >= 0 < 1:60.9.0-1 | 1:60.9.0-1 |
| mozilla | thunderbird | >= 0 < 1:60.9.0-1 | 1:60.9.0-1 |
| mozilla | thunderbird | >= 0 < 1:60.9.0-1 | 1:60.9.0-1 |
| mozilla | thunderbird | >= 0 < 1:60.9.0-1 | 1:60.9.0-1 |
| mozilla | thunderbird | >= 0 < 1:60.9.0+build1-0ubuntu0.16.04.2 | 1:60.9.0+build1-0ubuntu0.16.04.2 |
| mozilla | thunderbird | >= 0 < 1:60.9.0+build1-0ubuntu0.18.04.1 | 1:60.9.0+build1-0ubuntu0.18.04.1 |
| mozilla | thunderbird | >= 68.0 < 68.1.0 | 68.1.0 |
| mozilla | thunderbird | >= unspecified < 68.1 | 68.1 |
| mozilla | thunderbird | >= unspecified < 60.9 | 60.9 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
vendor_ubuntu6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2019-10-08·CVSS 6.5
CVE-2019-11739 [MEDIUM] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
It was discovered that encrypted S/MIME parts in a multipart message can
leak plaintext contents when included in a HTML reply or forward in some
circumstances. If a user were tricked in to replying to or forwarding a
specially crafted message, an attacker could potentially exploit this to
obtain sensitive information. (CVE-2019-11739)
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to obtain sensitive
information, conduct cross-site scripting (XSS) attack, scause a denial
of service, or execute arbitrary code. (CVE-2019-11740, CVE-2019-11742,
CVE-2019-11
Red Hat
Mozilla: Covert Content Attack on S/MIME encryption using a crafted multipart/alternative message
vendor_redhat·2019-09-15·CVSS 6.5
CVE-2019-11739 [MEDIUM] CWE-356 Mozilla: Covert Content Attack on S/MIME encryption using a crafted multipart/alternative message
Mozilla: Covert Content Attack on S/MIME encryption using a crafted multipart/alternative message
Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 68.1 and Thunderbird < 60.9.
Statement: In general, this flaw cannot be exploited through email in Thunderbird because scripting is disabled when reading mail, but it may present a risk in browser-like contexts.
Package: thunderbird (Red Hat Enterprise Linux 5) - Out of support scope
Debian
CVE-2019-11739: thunderbird - Encrypted S/MIME parts in a crafted multipart/alternative message can leak plain...
vendor_debian·2019·CVSS 6.5
CVE-2019-11739 [MEDIUM] CVE-2019-11739: thunderbird - Encrypted S/MIME parts in a crafted multipart/alternative message can leak plain...
Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 68.1 and Thunderbird < 60.9.
Scope: local
bookworm: resolved (fixed in 1:60.9.0-1)
bullseye: resolved (fixed in 1:60.9.0-1)
forky: resolved (fixed in 1:60.9.0-1)
sid: resolved (fixed in 1:60.9.0-1)
trixie: resolved (fixed in 1:60.9.0-1)
GHSA
GHSA-c6f3-q26v-xmx7: Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward
ghsa_unreviewed·2022-05-24
CVE-2019-11739 [MEDIUM] CWE-319 GHSA-c6f3-q26v-xmx7: Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward
Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 68.1 and Thunderbird < 60.9.
OSV
thunderbird vulnerabilities
osv·2019-10-08·CVSS 6.5
CVE-2019-11739 [MEDIUM] thunderbird vulnerabilities
thunderbird vulnerabilities
It was discovered that encrypted S/MIME parts in a multipart message can
leak plaintext contents when included in a HTML reply or forward in some
circumstances. If a user were tricked in to replying to or forwarding a
specially crafted message, an attacker could potentially exploit this to
obtain sensitive information. (CVE-2019-11739)
Multiple security issues were discovered in Thunderbird. If a user were
tricked in to opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to obtain sensitive
information, conduct cross-site scripting (XSS) attack, scause a denial
of service, or execute arbitrary code. (CVE-2019-11740, CVE-2019-11742,
CVE-2019-11743, CVE-2019-11744, CVE-2019-11746, CVE-2019-11752)
OSV
CVE-2019-11739: Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward
osv·2019-09-27·CVSS 6.5
CVE-2019-11739 [MEDIUM] CVE-2019-11739: Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward
Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 68.1 and Thunderbird < 60.9.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00009.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-10/msg00010.htmlhttps://bugzilla.mozilla.org/show_bug.cgi?id=1571481https://usn.ubuntu.com/4150-1/https://www.mozilla.org/security/advisories/mfsa2019-29/https://www.mozilla.org/security/advisories/mfsa2019-30/http://lists.opensuse.org/opensuse-security-announce/2019-10/msg00009.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-10/msg00010.htmlhttps://bugzilla.mozilla.org/show_bug.cgi?id=1571481https://usn.ubuntu.com/4150-1/https://www.mozilla.org/security/advisories/mfsa2019-29/https://www.mozilla.org/security/advisories/mfsa2019-30/
2019-09-27
Published