CVE-2023-0616: Medium severity thunderbird vulnerability
If a MIME email combines OpenPGP and OpenPGP MIME data in a certain way Thunderbird repeatedly attempts to process and display the message, which could cause Thunderbird's user interface to lock up and no longer respond to the user's actions. An attacker could send a crafted message with this structure to attempt a DoS attack.
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2023-0616?
CVE-2023-0616 is a vulnerability in Thunderbird that can cause the user interface to lock up and become unresponsive.
How does CVE-2023-0616 affect Thunderbird?
CVE-2023-0616 affects Thunderbird versions up to 102.8, causing the user interface to lock up and become unresponsive.
What is the severity of CVE-2023-0616?
CVE-2023-0616 has a medium severity rating.
How can I fix CVE-2023-0616?
To fix CVE-2023-0616, update Thunderbird to version 102.8 or higher.
Where can I find more information about CVE-2023-0616?
You can find more information about CVE-2023-0616 on the Mozilla website and Bugzilla.