DescriptionThe HTML rendering engine in Mozilla Thunderbird 1.5, when "Block loading of remote images in mail messages" is enabled, does not properly block external images from inline HTML attachments, which could allow remote attackers to obtain sensitive information, such as application version or IP address, when the user reads the email and the external image is accessed.
Overall state of this security issue: Resolved
This issue is currently rated as having low severity.
|National Vulnerability Database|
- SUSE-SA:2006:022, published Tue, 25 Apr 2006 15:00:00 +0000
List of released packages
|Product(s)||Fixed package version(s)||References|
|SUSE LINUX 10.0 |
SUSE LINUX 9.2
SUSE LINUX 9.3
|SUSE LINUX 9.1 for IA32 |
SUSE LINUX 9.1 for x86-64