CVE-2019-11703
A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in parser_get_next_char when processing certain email messages, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7.1.
- Mozilla Thunderbird
- < 60.7.1
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 10.5% (96th percentile)
- Weakness
- CWE-787
- NVD status
- Modified
- Published
- 2019-07-23
CVE-2019-11703 at NVD
3 known exploits for CVE-2019-11703
Proof-of-concept code and exploit modules indexed by Sploitus