Tracker / CVE-2010-0161
CVE-2010-0161
Medium 4.3
The nsAuthSSPI::Unwrap function in extensions/auth/nsAuthSSPI.cpp in Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 on Windows Vista, Windows Server 2008 R2, and Windows 7 allows remote SMTP, IMAP, and POP servers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via crafted data in a session that uses SSPI.
Affected products and versions
| mozilla | seamonkey |
|---|---|
| mozilla | seamonkey · … → 1.1.18 |
| mozilla | thunderbird |
| mozilla | thunderbird · … → 2.0.0.23 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.