<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 21:09:30 +0000</lastBuildDate>
    <item>
      <title>bdu:2021-02076</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2021-02076</link>
      <description>bdu:2021-02076</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2021-02076</guid>
    </item>
    <item>
      <title>certfr-2021-avi-248 — De multiples vulnérabilités ont été découvertes dans Mozilla
Thunderbird. Elles permettent à un attaquant de provoquer…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2021-avi-248</link>
      <description>certfr-2021-avi-248</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2021-avi-248</guid>
    </item>
    <item>
      <title>cnvd-2021-28299</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2021-28299</link>
      <description>cnvd-2021-28299</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2021-28299</guid>
    </item>
    <item>
      <title>EUVD-2026-23453</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-23453</link>
      <description>EUVD-2026-23453</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-23453</guid>
    </item>
    <item>
      <title>fkie_cve-2021-23993</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-23993</link>
      <description>&lt;p&gt;An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, and the Thunderbird user imports the crafted key, then Thunderbird may try to use the invalid subkey, but the RNP library rejects it from being used, causing encryption to fail. This vulnerability affects Thunderbird &amp;lt; 78.9.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, and the Thunderbird user imports the crafted key, then Thunderbird may try to use the invalid subkey, but the RNP library rejects it from being used, causing encryption to fail. This vulnerability affects Thunderbird &amp;lt; 78.9.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-23993</guid>
    </item>
    <item>
      <title>GHSA-3pj2-rvj5-6646</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3pj2-rvj5-6646</link>
      <description>&lt;p&gt;An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, and the Thunderbird user imports the crafted key, then Thunderbird may try to use the invalid subkey, but the RNP library rejects it from being used, causing encryption to fail. This vulnerability affects Thunderbird &amp;lt; 78.9.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, and the Thunderbird user imports the crafted key, then Thunderbird may try to use the invalid subkey, but the RNP library rejects it from being used, causing encryption to fail. This vulnerability affects Thunderbird &amp;lt; 78.9.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3pj2-rvj5-6646</guid>
    </item>
    <item>
      <title>gsd-2021-23993</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-23993</link>
      <description>gsd-2021-23993</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-23993</guid>
    </item>
    <item>
      <title>openSUSE-SU-2021:0580-1 — Security update for MozillaThunderbird</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2021:0580-1</link>
      <description>&lt;p&gt;Security update for MozillaThunderbird&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for MozillaThunderbird&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2021:0580-1</guid>
    </item>
    <item>
      <title>RHSA-2021:1190 — Red Hat Security Advisory: thunderbird security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2021:1190</link>
      <description>&lt;p&gt;Mozilla: An attacker may use Thunderbird&amp;#39;s OpenPGP key refresh mechanism to poison an existing key Mozilla: A crafted OpenPGP key with an invalid user ID could be used to confuse the user Mozilla: Inability to send encrypted OpenPGP email after importing a crafted OpenPGP key Mozilla: Thunderbird might execute an alternative OTR library Mozilla: Logic issue potentially leaves key material unlocked&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla: An attacker may use Thunderbird&amp;#39;s OpenPGP key refresh mechanism to poison an existing key Mozilla: A crafted OpenPGP key with an invalid user ID could be used to confuse the user Mozilla: Inability to send encrypted OpenPGP email after importing a crafted OpenPGP key Mozilla: Thunderbird might execute an alternative OTR library Mozilla: Logic issue potentially leaves key material unlocked&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2021:1190</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-23993</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-23993</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: thunderbird, Ubuntu:20.04:LTS: thunderbird&lt;/p&gt;
&lt;p&gt;An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, and the Thunderbird user imports the crafted key, then Thunderbird may try to use the invalid subkey, but the RNP library rejects it from being used, causing encryption to fail. This vulnerability affects Thunderbird &amp;lt; 78.9.1.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: thunderbird, Ubuntu:20.04:LTS: thunderbird&lt;/p&gt;
&lt;p&gt;An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, and the Thunderbird user imports the crafted key, then Thunderbird may try to use the invalid subkey, but the RNP library rejects it from being used, causing encryption to fail. This vulnerability affects Thunderbird &amp;lt; 78.9.1.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-23993</guid>
    </item>
  </channel>
</rss>
