PT-2026-103468 · Mozilla · Thunderbird

·

CVE-2026-103500

·

Published

2026-09-30

·

Updated

2026-09-30

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Thunderbird versions prior to 140.17 Thunderbird versions prior to 153.4 Thunderbird versions prior to 157
Description A heap buffer overflow occurs when a user opens an email with a size of 2GB or larger. A heap buffer overflow is a memory corruption issue that happens when a program writes more data to a heap-allocated memory block than it can hold.
Recommendations Update to version 140.17. Update to version 153.4. Update to version 157.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-103500

Affected Products

Thunderbird