Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 15 Sep 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A maliciously constructed mail header could lead to multiple fields being parsed as one, or potential memory safety violations. This vulnerability was fixed in Thunderbird 140.16. | A maliciously constructed mail header could lead to multiple fields being parsed as one, or potential memory safety violations. This vulnerability was fixed in Thunderbird 156 and Thunderbird 140.16. |
| References |
|
Tue, 15 Sep 2026 20:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A maliciously constructed mail header could lead to multiple fields being parsed as one, or potential memory safety violations. This vulnerability was fixed in Thunderbird 140.16. | |
| Title | Ambiguous parsing of mail headers | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2026-09-15T20:01:41.432Z
Reserved: 2026-09-15T19:42:50.750Z
Link: CVE-2026-92238
No data.
Status : Received
Published: 2026-09-15T20:19:41.477
Modified: 2026-09-15T20:19:41.477
Link: CVE-2026-92238
No data.
OpenCVE Enrichment
No data.
No weakness.