CVE-2020-15685
published 2022-12-22CVE-2020-15685: During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session. This…
PriorityP341high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
0.85%
54.0th percentile
During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session. This vulnerability affects Thunderbird < 78.7.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | thunderbird | < thunderbird 1:78.7.0-1 (bookworm) | thunderbird 1:78.7.0-1 (bookworm) |
| mozilla | firefox | — | — |
| mozilla | thunderbird | < 78.7.0 | 78.7.0 |
| mozilla | thunderbird | >= 0 < 1:78.7.0-1 | 1:78.7.0-1 |
| mozilla | thunderbird | >= 0 < 1:78.7.0-1 | 1:78.7.0-1 |
| mozilla | thunderbird | >= 0 < 1:78.7.0-1 | 1:78.7.0-1 |
| mozilla | thunderbird | >= 0 < 1:78.7.0-1 | 1:78.7.0-1 |
| mozilla | thunderbird | >= unspecified < 78.7 | 78.7 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
vendor_ubuntu8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2021-02-16·CVSS 8.8
CVE-2020-15685 [HIGH] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Multiple security issues were discovered in Thunderbird. If a user were
tricked into opening a specially crafted website in a browsing context,
an attacker could potentially exploit these to cause a denial of service,
obtain sensitive information, or execute arbitrary code. (CVE-2020-26976,
CVE-2021-23953, CVE-2021-23954, CVE-2021-23960, CVE-2021-23964)
It was discovered that responses received during the plaintext phase of
the STARTTLS connection setup were subsequently evaluated during the
encrypted session. A person in the middle could potentially exploit this
to perform a response injection attack. (CVE-2020-15685)
Instructions: After a standard system update you need to restart Thunderbi
Red Hat
Mozilla: IMAP Response Injection when using STARTTLS
vendor_redhat·2021-01-26·CVSS 8.8
CVE-2020-15685 [HIGH] CWE-924 Mozilla: IMAP Response Injection when using STARTTLS
Mozilla: IMAP Response Injection when using STARTTLS
During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session. This vulnerability affects Thunderbird < 78.7.
A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes that during the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session.
Statement: Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory.
Package: thunderbird (Red Hat Enterprise Linux 6) - Out of support scope
Debian
CVE-2020-15685: thunderbird - During the plaintext phase of the STARTTLS connection setup, protocol commands c...
vendor_debian·2020·CVSS 8.8
CVE-2020-15685 [HIGH] CVE-2020-15685: thunderbird - During the plaintext phase of the STARTTLS connection setup, protocol commands c...
During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session. This vulnerability affects Thunderbird < 78.7.
Scope: local
bookworm: resolved (fixed in 1:78.7.0-1)
bullseye: resolved (fixed in 1:78.7.0-1)
forky: resolved (fixed in 1:78.7.0-1)
sid: resolved (fixed in 1:78.7.0-1)
trixie: resolved (fixed in 1:78.7.0-1)
Mozilla
Mozilla Foundation Security Advisory 2021-05: CVE-2020-15685
vendor_mozilla·CVSS 8.8
CVE-2020-15685 [HIGH] Mozilla Foundation Security Advisory 2021-05: CVE-2020-15685
Mozilla Foundation Security Advisory 2021-05
CVE: CVE-2020-15685
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 78.7
GHSA
GHSA-c839-4fpv-9xp7: During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session
ghsa_unreviewed·2022-12-22
CVE-2020-15685 [HIGH] CWE-77 GHSA-c839-4fpv-9xp7: During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session
During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session. This vulnerability affects Thunderbird < 78.7.
OSV
CVE-2020-15685: During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session
osv·2022-12-22·CVSS 8.8
CVE-2020-15685 [HIGH] CVE-2020-15685: During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session
During the plaintext phase of the STARTTLS connection setup, protocol commands could have been injected and evaluated within the encrypted session. This vulnerability affects Thunderbird < 78.7.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-12-22
Published