If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unprotected part, Thunderbird did not indicate that only parts of the message are protected. This vulnerability affects Thunderbird < 78.10.2.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2679-1 | thunderbird security update |
Debian DSA |
DSA-4927-1 | thunderbird security update |
EUVD |
EUVD-2021-16416 | If a MIME encoded email contains an OpenPGP inline signed or encrypted message part, but also contains an additional unprotected part, Thunderbird did not indicate that only parts of the message are protected. This vulnerability affects Thunderbird < 78.10.2. |
Ubuntu USN |
USN-4995-1 | Thunderbird vulnerabilities |
Ubuntu USN |
USN-4995-2 | Thunderbird vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2024-08-03T22:18:03.504Z
Reserved: 2021-04-01T00:00:00
Link: CVE-2021-29957
No data.
Status : Modified
Published: 2021-06-24T14:15:10.110
Modified: 2024-11-21T06:02:03.563
Link: CVE-2021-29957
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN