CVE-2021-43529: Critical severity thunderbird vulnerability
Thunderbird versions prior to 91.3.0 are vulnerable to the heap overflow described in CVE-2021-43527 when processing S/MIME messages. Thunderbird versions 91.3.0 and later will not call the vulnerable code when processing S/MIME messages that contain certificates with DER-encoded DSA or RSA-PSS signatures.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2021-43529?
The severity of CVE-2021-43529 is critical.
Which software versions are affected by CVE-2021-43529?
Thunderbird versions prior to 91.3.0 and certain Debian Thunderbird versions are affected.
How can I fix CVE-2021-43529?
Update Thunderbird to version 91.3.0 or later, or apply the appropriate Debian package upgrades.
What is the vulnerability description of CVE-2021-43529?
CVE-2021-43529 is a heap overflow vulnerability in Thunderbird when processing S/MIME messages.
Where can I find more information about CVE-2021-43529?
More information about CVE-2021-43529 can be found in the references provided.