CVE-2019-11705
A flaw in Thunderbird's implementation of iCal causes a stack buffer overflow in icalrecur_add_bydayrules when processing certain email messages, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7.1.
- Mozilla Thunderbird
- < 60.7.1
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 9.9% (95th percentile)
- Weakness
- CWE-787
- NVD status
- Modified
- Published
- 2019-07-23
CVE-2019-11705 at NVD
3 known exploits for CVE-2019-11705
Proof-of-concept code and exploit modules indexed by Sploitus