CVE Vulnerabilities

CVE-2005-0149

Published: Feb 15, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Thunderbird 0.6 through 0.9 and Mozilla 1.7 through 1.7.3 does not obey the network.cookie.disableCookieForMailNews preference, which could allow remote attackers to bypass the users intended privacy and security policy by using cookies in e-mail messages.

Affected Software

NameVendorStart VersionEnd Version
MozillaMozilla1.7 (including)1.7 (including)
MozillaMozilla1.7-alpha (including)1.7-alpha (including)
MozillaMozilla1.7-beta (including)1.7-beta (including)
MozillaMozilla1.7-rc1 (including)1.7-rc1 (including)
MozillaMozilla1.7-rc2 (including)1.7-rc2 (including)
MozillaMozilla1.7-rc3 (including)1.7-rc3 (including)
MozillaMozilla1.7.1 (including)1.7.1 (including)
MozillaMozilla1.7.2 (including)1.7.2 (including)
MozillaMozilla1.7.3 (including)1.7.3 (including)
ThunderbirdMozilla0.6 (including)0.6 (including)
ThunderbirdMozilla0.7 (including)0.7 (including)
ThunderbirdMozilla0.7.1 (including)0.7.1 (including)
ThunderbirdMozilla0.7.2 (including)0.7.2 (including)
ThunderbirdMozilla0.7.3 (including)0.7.3 (including)
ThunderbirdMozilla0.9 (including)0.9 (including)
Red Hat Enterprise Linux 4RedHatthunderbird-0:1.0-1.1.EL4*
Red Hat Enterprise Linux 4RedHatdevhelp-0:0.9.2-2.4.3*
Red Hat Enterprise Linux 4RedHatevolution-0:2.0.2-14*
MozillaUbuntuedgy*

References