CVE-2020-35113: High severity thunderbird vulnerability
Mozilla developer Christian Holler reported memory safety bugs present in Firefox 83 and Firefox ESR 78.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
Other sources
Mozilla developer Christian Holler reported memory safety bugs present in Thunderbird 78.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
— Mozilla
Mozilla developers reported memory safety bugs present in Firefox 83 and Firefox ESR 78.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2020-35113?
CVE-2020-35113 is considered a high severity vulnerability due to its potential for memory corruption and arbitrary code execution.
How do I fix CVE-2020-35113?
To remediate CVE-2020-35113, update Firefox to version 84 or later, or Firefox ESR to version 78.6 or later.
What software is affected by CVE-2020-35113?
CVE-2020-35113 affects Firefox up to version 84, Firefox ESR up to version 78.6, and Thunderbird up to version 78.6.
What type of vulnerability is CVE-2020-35113?
CVE-2020-35113 is classified as a memory safety issue leading to potential memory corruption.
Who reported the vulnerability CVE-2020-35113?
The vulnerability CVE-2020-35113 was reported by Mozilla developer Christian Holler.