|
|
Log in / Subscribe / Register

thunderbird: multiple vulnerabilities

Package(s):thunderbird CVE #(s):
Created:February 10, 2010 Updated:February 11, 2010
Description: From the Pardus advisory:

Security researcher Dan Kaminsky reported an integer overflow in the Theora video library. A video's dimensions were being multiplied together and used in particular memory allocations. When the video dimensions were sufficiently large, the multiplication could overflow a 32-bit integer resulting in too small a memory buffer being allocated for the video. An attacker could use a specially crafted video to write data past the bounds of this buffer, causing a crash and potentially running arbitrary code on a victim's computer.

Alerts:
Pardus 2010-30 thunderbird 2010-02-09

to post comments

thunderbird: multiple vulnerabilities

Posted Feb 11, 2010 8:38 UTC (Thu) by Cato (guest, #7643) [Link]

It's a bit of a shock that Thunderbird has a video library at all - apparently it was added in 3.0. I can't think of a real use case for video embedding, particularly since most email clients don't support this and you would need to provide a URL anyway. So the main user base for this 'feature' will probably be those attacking the email client.

At least video requires a right-click menu option to play, but that's not much of a barrier to spammers/hackers: https://developer.mozilla.org/en/Thunderbird_3_for_users


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds