9.1
CVE-2026-92240
- EPSS 0.21%
- Veröffentlicht 15.09.2026 19:42:53
- Zuletzt bearbeitet 24.09.2026 14:15:03
- Erkennungen
Out-of-bounds read in IMAP response parser
A malicious or compromised IMAP server can trigger an out-of-bounds read in the IMAP response parser by sending an untagged '* ID' response, crashing Thunderbird. The affected parsing path is reachable before authentication. This vulnerability was fixed in Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mozilla ≫ Thunderbird Version < 140.16.0
Mozilla ≫ Thunderbird Version >= 141.0 < 153.3.0
Mozilla ≫ Thunderbird Version >= 154.0 < 156.0
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.21% | 0.117 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 9.1 | 3.9 | 5.2 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
|
CWE-125 Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
https://www.mozilla.org/security/advisories/mfsa2026-95/
https://bugzilla.mozilla.org/show_bug.cgi?id=2069113
https://www.mozilla.org/security/advisories/mfsa2026-94/
https://www.mozilla.org/security/advisories/mfsa2026-96/