cbcvebase.
CVE-2022-45414
published 2022-12-22

CVE-2022-45414: If a Thunderbird user quoted from an HTML email, for example by replying to the email, and the email contained either a VIDEO tag with the POSTER attribute or…

PriorityP340high8.1CVSS 3.1
AVNACLPRNUIRSUCHIHAN
EPSS
0.53%
41.1th percentile
If a Thunderbird user quoted from an HTML email, for example by replying to the email, and the email contained either a VIDEO tag with the POSTER attribute or an OBJECT tag with a DATA attribute, a network request to the referenced remote URL was performed, regardless of a configuration to block remote content. An image loaded from the POSTER attribute was shown in the composer window. These issues could have given an attacker additional capabilities when targetting releases that did not yet have a fix for CVE-2022-3033 which was reported around three months ago. This vulnerability affects Thunderbird < 102.5.1.

Affected

10 ranges
VendorProductVersion rangeFixed in
debianthunderbird< thunderbird 1:102.5.1-1 (bookworm)thunderbird 1:102.5.1-1 (bookworm)
mozillafirefox
mozillathunderbird< 102.5.1102.5.1
mozillathunderbird>= 0 < 1:102.6.0-1~deb11u11:102.6.0-1~deb11u1
mozillathunderbird>= 0 < 1:102.5.1-11:102.5.1-1
mozillathunderbird>= 0 < 1:102.5.1-11:102.5.1-1
mozillathunderbird>= 0 < 1:102.5.1-11:102.5.1-1
mozillathunderbird>= 0 < 1:102.7.1+build2-0ubuntu0.18.04.11:102.7.1+build2-0ubuntu0.18.04.1
mozillathunderbird>= 0 < 1:102.7.1+build2-0ubuntu0.20.04.11:102.7.1+build2-0ubuntu0.20.04.1
mozillathunderbird>= 0 < 1:102.7.1+build2-0ubuntu0.22.04.11:102.7.1+build2-0ubuntu0.22.04.1

CVSS provenance

nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N
osv8.1HIGH
vendor_debian8.1HIGH
vendor_redhat8.1HIGH
vendor_ubuntu6.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.