Korean
<< Back
VID 28901
Severity 40
Port 139,445
Protocol TCP
Class SMB
Detailed Description A version of Mozilla Thunderbird which is older than 52.5 has been installed on the host. Mozilla Thunderbird is an open-source based e-mail client, developed by the Mozilla project. Mozilla Thunderbird versions prior to 52.5 are multiple vulnerable to vulnerability.

- Thunderbird has bugs showed evidence of memory corruption. (CVE-2017-7826)

- A use-after-free vulnerability can occur when flushing and resizing layout because the PressShell object has been freed while still in use. This results in a potentially exploitable crash during these operations. (CVE-2017-7828)

- The Resource Timing API incorrectly revealed navigations in cross-origin iframes. This is a same-origin policy violation and could allow for data theft of URLs loaded by users. (CVE-2017-7830)

* Note: This check requires an account with Guest or upper privileges which can access the registry of the remote host to scan. Absence of this condition will result in the check not being performed and a False Negative for all vulnerable hosts.

* References:
https://www.mozilla.org/en-US/security/advisories/mfsa2017-26/

* Platforms Affected:
Mozilla Foundation, Thunderbird versions prior to 52.5
Any operating system Any version
Recommendation Upgrade to the latest version of Thunderbird (52.5 or later), available from the Mozilla Web site at http://www.mozilla.com/thunderbird/
Related URL CVE-2017-7826,CVE-2017-7828,CVE-2017-7830 (CVE)
Related URL 101832 (SecurityFocus)
Related URL (ISS)