CVE-2016-9905: High severity thunderbird vulnerability
A potentially exploitable crash in "EnumerateSubDocuments" while adding or removing sub-documents. This vulnerability affects Firefox ESR < 45.6 and Thunderbird < 45.6.
Other sources
A potentially exploitable crash in EnumerateSubDocuments while adding or removing sub-documents.
Affected Software
Remediation
Patch Available
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2016-9905?
CVE-2016-9905 has been classified as a potentially exploitable crash vulnerability affecting various versions of Firefox and Thunderbird.
How do I fix CVE-2016-9905?
To mitigate CVE-2016-9905, users should upgrade to Firefox ESR version 45.6 or higher and Thunderbird version 45.6 or higher.
Which products are affected by CVE-2016-9905?
CVE-2016-9905 affects Firefox ESR versions below 45.6 and Thunderbird versions below 45.6.
Can CVE-2016-9905 lead to remote code execution?
While CVE-2016-9905 is primarily a crash vulnerability, it could potentially be exploited to execute arbitrary code in certain scenarios.
When was CVE-2016-9905 publicly disclosed?
CVE-2016-9905 was publicly disclosed as part of a security advisory by Mozilla in 2016.