First published: Tue May 03 2022(Updated: )
The parent process would not properly check whether the Speech Synthesis feature is enabled, when receiving instructions from a child process.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Thunderbird | <91.9 | 91.9 |
Thunderbird | <91.9 | |
<91.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-29913 is considered a medium severity vulnerability affecting Mozilla Thunderbird.
CVE-2022-29913 affects Mozilla Thunderbird versions prior to 91.9.
To fix CVE-2022-29913, upgrade Thunderbird to version 91.9 or later.
CVE-2022-29913 is a security vulnerability related to improper checks of the Speech Synthesis feature.
Yes, CVE-2022-29913 could potentially expose users to security risks due to improper validation of instructions from child processes.