GHSA-f2hg-25f8-vgfjHighCVSS 7.5
A malicious IMAP server can trigger use-after-free and heap-memory disclosure by sending a...
🔗 CVE IDs covered (1)
📋 Description
A malicious IMAP server can trigger use-after-free and heap-memory disclosure by sending a crafted ID response. Heap contents can ultimately be persisted to prefs.js. This vulnerability was fixed in Thunderbird 155, Thunderbird 140.15, and Thunderbird 153.2.
🔗 References (6)
- https://nvd.nist.gov/vuln/detail/CVE-2026-84641
- https://bugzilla.mozilla.org/show_bug.cgi?id=2057805
- https://www.mozilla.org/security/advisories/mfsa2026-86
- https://www.mozilla.org/security/advisories/mfsa2026-87
- https://www.mozilla.org/security/advisories/mfsa2026-88
- https://github.com/advisories/GHSA-f2hg-25f8-vgfj