CVE-2020-6792 (NVD)

2020-03-02

When deriving an identifier for an email message, uninitialized memory was used in addition to the message contents. This vulnerability affects Thunderbird < 68.5.

Products Ubuntu_linux, Thunderbird
Type Use of Uninitialized Resource (CWE-908)
Missing Initialization of Resource (CWE-909)
First patch - None (likely due to unavailable code)
Links https://usn.ubuntu.com/4328-1/
https://www.mozilla.org/security/advisories/mfsa2020-07/
https://security.gentoo.org/glsa/202003-10
https://usn.ubuntu.com/4335-1/
https://bugzilla.mozilla.org/show_bug.cgi?id=1609607