Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 68.1 and Thunderbird < 60.9.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DLA-1926-1 | thunderbird security update |
![]() |
DSA-4523-1 | thunderbird security update |
![]() |
EUVD-2019-3409 | Encrypted S/MIME parts in a crafted multipart/alternative message can leak plaintext when included in a a HTML reply/forward. This vulnerability affects Thunderbird < 68.1 and Thunderbird < 60.9. |
![]() |
USN-4150-1 | Thunderbird vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2024-08-04T23:03:32.812Z
Reserved: 2019-05-03T00:00:00
Link: CVE-2019-11739

No data.

Status : Modified
Published: 2019-09-27T18:15:11.677
Modified: 2024-11-21T04:21:41.583
Link: CVE-2019-11739


No data.