When xdg-mail is configured to use thunderbird for mailto URLs, improper parsing of the URL can lead to additional headers being passed to thunderbird that should not be included per RFC 2368. An attacker can use this method to create a mailto URL that looks safe to users, but will actually attach files when clicked.
CVSS Details
- CVSS 3.1 Base Score: 7.4
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade xdg-utils | Jul 4, 2025 | Nov 19, 2022 |
| Amazon Linux Ami 2 | — | Upgrade xdg-utils | Mar 22, 2023 | Nov 19, 2022 |
| Debian | — | No solution exists | May 15, 2025 | Nov 19, 2022 |
| Oracle_linux | — | Upgrade xdg-utils | May 26, 2025 | Aug 3, 2022 |
| Redhat_linux | — | Upgrade xdg-utilsNo solution exists | May 20, 2025 | Nov 19, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub