A malicious mail server could send malformed strings with negative lengths, causing the parser to read memory outside the buffer. If a mail server or connection to a mail server were compromised, an attacker could cause the parser to malfunction, potentially crashing Thunderbird or leaking sensitive data. This vulnerability affects Thunderbird < 149 and Thunderbird < 140.9.
Subscriptions
No data.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 24 Mar 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A malicious mail server could send malformed strings with negative lengths, causing the parser to read memory outside the buffer. If a mail server or connection to a mail server were compromised, an attacker could cause the parser to malfunction, potentially crashing Thunderbird or leaking sensitive data. This vulnerability affects Thunderbird < 149 and Thunderbird < 140.9. | |
| Title | Out of bounds read in IMAP parsing | |
| References |
|
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2026-03-24T20:27:15.198Z
Reserved: 2026-03-18T10:03:43.909Z
Link: CVE-2026-4371
No data.
Status : Received
Published: 2026-03-24T21:16:29.583
Modified: 2026-03-24T21:16:29.583
Link: CVE-2026-4371
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.