#VU74972 Input validation error in Mozilla Thunderbird - CVE-2023-29479
Published: April 11, 2023
Mozilla Thunderbird
Mozilla
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input within the Ribose RNP library when parsing PKESK/SKESK packets. A remote attacker can send specially crafted OpenPGP messages to the application and perform a denial of service (DoS) attack.