PT-2022-3645 · Mozilla+8 · Thunderbird+8

Jonathan Von Niessen

·

Published

2022-05-31

·

Updated

2024-06-15

·

CVE-2022-1834

CVSS v2.0

7.6

High

VectorAV:N/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Thunderbird versions prior to 91.10
Description The issue arises when displaying the sender of an email, specifically if the sender name contains the Braille Pattern Blank space character multiple times. This could be exploited by an attacker to send an email with their digital signature, making it appear as if it came from an arbitrary sender email address chosen by the attacker. If the sender name starts with a false email address followed by many Braille space characters, the attacker's email address remains invisible. Thunderbird compares the invisible sender address with the signature's email address, and if the signing key or certificate is accepted, the email is shown as having a valid digital signature.
Recommendations For Thunderbird versions prior to 91.10, update to version 91.10 or later to resolve the issue. As a temporary workaround, consider disabling the display of sender names that contain special characters, such as the Braille Pattern Blank space character, until a patch is available. Restrict access to emails with suspicious sender names to minimize the risk of exploitation. Avoid relying solely on digital signatures for email authentication until the issue is resolved. At the moment, there is no other information about additional mitigation measures.

Exploit

Fix

Improper Certificate Validation

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2022-1996
ALT-PU-2022-2006
ALT-PU-2022-2031
ALT-PU-2022-2053
BDU:2022-04430
CESA-2022_4887
CESA-2022_4891
CVE-2022-1834
DLA-3041-1
DSA-5158-1
MGASA-2022-0221
OPENSUSE-SU-2022_2062-1
OPENSUSE-SU-2024:12117-1
RHSA-2022:4887
RHSA-2022:4888
RHSA-2022:4889
RHSA-2022:4890
RHSA-2022:4891
RHSA-2022:4892
RHSA-2022_4887
RHSA-2022_4891
RHSA-2022_4892
RLSA-2022:4887
SUSE-SU-2022:2062-1
USN-5512-1

Affected Products

Alt Linux
Astra Linux
Centos
Linuxmint
Red Hat
Rocky Linux
Suse
Thunderbird
Ubuntu