CVE-2019-11705: Buffer Overflow
A flaw in Thunderbird's implementation of iCal causes a stack buffer overflow in icalrecuraddbydayrules when processing certain email messages, resulting in a potentially exploitable crash.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2019-11705?
CVE-2019-11705 is rated as a high severity vulnerability due to the potential for a stack buffer overflow leading to a crash.
How do I fix CVE-2019-11705?
To resolve CVE-2019-11705, it is recommended to update Mozilla Thunderbird to version 60.7.1 or later.
What causes CVE-2019-11705?
CVE-2019-11705 is caused by a flaw in Thunderbird's iCal implementation that leads to a stack buffer overflow when processing specific email messages.
What are the affected versions in CVE-2019-11705?
CVE-2019-11705 affects all versions of Mozilla Thunderbird prior to 60.7.1.
Can CVE-2019-11705 be exploited remotely?
Yes, CVE-2019-11705 can be potentially exploited remotely by sending specially crafted email messages.