PublicDateAtUSN: 2010-03-18 Candidate: CVE-2010-0163 PublicDate: 2010-03-23 00:53:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0163 https://ubuntu.com/security/notices/USN-915-1 Description: Mozilla Thunderbird before 2.0.0.24 and SeaMonkey before 1.1.19 process e-mail attachments with a parser that performs casts and line termination incorrectly, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted message, related to message indexing. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_thunderbird: upstream_thunderbird: released (2.0.0.24) dapper_thunderbird: DNE hardy_thunderbird: released (2.0.0.24+build1+nobinonly-0ubuntu0.8.04.1) intrepid_thunderbird: released (2.0.0.24+build1+nobinonly-0ubuntu0.8.10.1) jaunty_thunderbird: released (2.0.0.24+build1+nobinonly-0ubuntu0.9.04.1) karmic_thunderbird: released (2.0.0.24+build1+nobinonly-0ubuntu0.9.10.1) devel_thunderbird: not-affected (3.0.3+nobinonly-0ubuntu1)