UBUNTU-CVE-2018-18513
Dashboard / Vulnerabilities / UBUNTU-CVE-2018-18513
Summary:
Details: A crash can occur when processing a crafted S/MIME message or an XPI package containing a crafted signature. This can be used as a denial-of-service (DOS) attack because Thunderbird reopens the last seen message on restart, triggering the crash again. This vulnerability affects Thunderbird < 60.5.
References: https://ubuntu.com/security/CVE-2018-18513, https://www.mozilla.org/en-US/security/advisories/mfsa2019-03/#CVE-2018-18513, https://bugzilla.mozilla.org/show_bug.cgi?id=1533300, https://www.mozilla.org/security/advisories/mfsa2019-03/, https://www.cve.org/CVERecord?id=CVE-2018-18513
Affected packages
Package
Name: thunderbird
Purl: pkg:deb/ubuntu/thunderbird@1:60.6.1+build2-0ubuntu0.16.04.1?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
