#VU21106 Information disclosure in Mozilla Thunderbird - CVE-2019-11739
Published: September 13, 2019
Mozilla Thunderbird
Mozilla
Description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to an error when processing multipart messages. A remote attacker can create a specially crafted multipart/alternative message that can leak encrypted S/MIME parts when included in a a HTML reply/forward.