>
>
> TITLE:
> Thunderbird Multiple Vulnerabilities
>
> SECUNIA ADVISORY ID:
> SA18704
>
> VERIFY ADVISORY:
> http://secunia.com/advisories/18704/
>
> CRITICAL:
> Moderately critical
>
> IMPACT:
> Security Bypass, Cross Site Scripting, Exposure of system
> information, Exposure of sensitive information, System access
>
> WHERE:
> From remote
>
> SOFTWARE:
> Mozilla Thunderbird 0.x
> http://secunia.com/product/2637/
> Mozilla Thunderbird 1.x
> http://secunia.com/product/4652/
>
> DESCRIPTION:
> Some vulnerabilities have been reported in Thunderbird, which can be
> exploited by malicious people to bypass certain security
> restrictions, conduct cross-site scripting attacks, potentially
> disclose sensitive information, and potentially compromise a user's
> system.
>
> For more information:
> SA18700
>
> Success exploitation of vulnerabilities #1, #2, #3, #4, #5, and #7
> requires that JavaScript is enabled (not enabled by default).
>
> SOLUTION:
> Disable JavaScript and do not open mails from untrusted sources.
>
> OTHER REFERENCES:
> SA18700:
> http://secunia.com/advisories/18700/
>