Vulnerability Details CVE-2023-0430
Certificate OCSP revocation status was not checked when verifying S/Mime signatures. Mail signed with a revoked certificate would be displayed as having a valid signature. Thunderbird versions from 68 to 102.7.0 were affected by this bug. This vulnerability affects Thunderbird < 102.7.1.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 22.3%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2023-0430
-
cpe:2.3:a:mozilla:thunderbird:101.0
-
cpe:2.3:a:mozilla:thunderbird:102.0
-
cpe:2.3:a:mozilla:thunderbird:102.1
-
cpe:2.3:a:mozilla:thunderbird:102.2
-
cpe:2.3:a:mozilla:thunderbird:102.2.1
-
cpe:2.3:a:mozilla:thunderbird:102.5
-
cpe:2.3:a:mozilla:thunderbird:102.5.1
-
cpe:2.3:a:mozilla:thunderbird:102.6
-
cpe:2.3:a:mozilla:thunderbird:68.0
-
cpe:2.3:a:mozilla:thunderbird:68.1
-
cpe:2.3:a:mozilla:thunderbird:68.1.0
-
cpe:2.3:a:mozilla:thunderbird:68.1.1
-
cpe:2.3:a:mozilla:thunderbird:68.1.2
-
cpe:2.3:a:mozilla:thunderbird:68.10.0
-
cpe:2.3:a:mozilla:thunderbird:68.11
-
cpe:2.3:a:mozilla:thunderbird:68.12
-
cpe:2.3:a:mozilla:thunderbird:68.2.0
-
cpe:2.3:a:mozilla:thunderbird:68.2.1
-
cpe:2.3:a:mozilla:thunderbird:68.2.2
-
cpe:2.3:a:mozilla:thunderbird:68.3.0
-
cpe:2.3:a:mozilla:thunderbird:68.3.1
-
cpe:2.3:a:mozilla:thunderbird:68.4.1
-
cpe:2.3:a:mozilla:thunderbird:68.5.0
-
cpe:2.3:a:mozilla:thunderbird:68.6.0
-
cpe:2.3:a:mozilla:thunderbird:68.7.0
-
cpe:2.3:a:mozilla:thunderbird:68.8.0
-
cpe:2.3:a:mozilla:thunderbird:68.9.0
-
cpe:2.3:a:mozilla:thunderbird:78.0
-
cpe:2.3:a:mozilla:thunderbird:78.0.1
-
cpe:2.3:a:mozilla:thunderbird:78.1
-
cpe:2.3:a:mozilla:thunderbird:78.1.0
-
cpe:2.3:a:mozilla:thunderbird:78.1.1
-
cpe:2.3:a:mozilla:thunderbird:78.10.0
-
cpe:2.3:a:mozilla:thunderbird:78.10.1
-
cpe:2.3:a:mozilla:thunderbird:78.10.2
-
cpe:2.3:a:mozilla:thunderbird:78.11.0
-
cpe:2.3:a:mozilla:thunderbird:78.12
-
cpe:2.3:a:mozilla:thunderbird:78.12.0
-
cpe:2.3:a:mozilla:thunderbird:78.13.0
-
cpe:2.3:a:mozilla:thunderbird:78.14
-
cpe:2.3:a:mozilla:thunderbird:78.15
-
cpe:2.3:a:mozilla:thunderbird:78.2
-
cpe:2.3:a:mozilla:thunderbird:78.3
-
cpe:2.3:a:mozilla:thunderbird:78.4.0
-
cpe:2.3:a:mozilla:thunderbird:78.4.2
-
cpe:2.3:a:mozilla:thunderbird:78.5
-
cpe:2.3:a:mozilla:thunderbird:78.5.1
-
cpe:2.3:a:mozilla:thunderbird:78.6.0
-
cpe:2.3:a:mozilla:thunderbird:78.6.1
-
cpe:2.3:a:mozilla:thunderbird:78.7.0
-
cpe:2.3:a:mozilla:thunderbird:78.7.1
-
cpe:2.3:a:mozilla:thunderbird:78.8.0
-
cpe:2.3:a:mozilla:thunderbird:78.8.1
-
cpe:2.3:a:mozilla:thunderbird:78.9.0
-
cpe:2.3:a:mozilla:thunderbird:78.9.1
-
cpe:2.3:a:mozilla:thunderbird:91.0
-
cpe:2.3:a:mozilla:thunderbird:91.0.1
-
cpe:2.3:a:mozilla:thunderbird:91.0.2
-
cpe:2.3:a:mozilla:thunderbird:91.0.3
-
cpe:2.3:a:mozilla:thunderbird:91.1
-
cpe:2.3:a:mozilla:thunderbird:91.10
-
cpe:2.3:a:mozilla:thunderbird:91.11
-
cpe:2.3:a:mozilla:thunderbird:91.12
-
cpe:2.3:a:mozilla:thunderbird:91.13
-
cpe:2.3:a:mozilla:thunderbird:91.13.1
-
cpe:2.3:a:mozilla:thunderbird:91.2
-
cpe:2.3:a:mozilla:thunderbird:91.3.0
-
cpe:2.3:a:mozilla:thunderbird:91.4.0
-
cpe:2.3:a:mozilla:thunderbird:91.5
-
cpe:2.3:a:mozilla:thunderbird:91.6
-
cpe:2.3:a:mozilla:thunderbird:91.6.1
-
cpe:2.3:a:mozilla:thunderbird:91.6.2
-
cpe:2.3:a:mozilla:thunderbird:91.7
-
cpe:2.3:a:mozilla:thunderbird:91.8
-
cpe:2.3:a:mozilla:thunderbird:91.9
-
cpe:2.3:a:mozilla:thunderbird:91.9.1