Debian Thunderbird vulnerabilities
864 known vulnerabilities affecting debian/thunderbird.
Total CVEs
864
CISA KEV
10
actively exploited
Public exploits
23
Exploited in wild
16
Severity breakdown
CRITICAL166HIGH358MEDIUM317LOW23
Vulnerabilities
Page 12 of 44
CVE-2023-32207P3HIGHCVSS 8.8fixed in firefox 113.0-1 (sid)2023
CVE-2023-32207 [HIGH] CVE-2023-32207: firefox - A missing delay in popup notifications could have made it possible for an attack...
A missing delay in popup notifications could have made it possible for an attacker to trick a user into granting permissions. This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and Thunderbird < 102.11.
Scope: local
sid: resolved (fixed in 113.0-1)
debian
CVE-2026-0880P3HIGHCVSS 8.8fixed in firefox 147.0-1 (sid)2026
CVE-2026-0880 [HIGH] CVE-2026-0880: firefox - Sandbox escape due to integer overflow in the Graphics component. This vulnerabi...
Sandbox escape due to integer overflow in the Graphics component. This vulnerability affects Firefox < 147, Firefox ESR < 115.32, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.
Scope: local
sid: resolved (fixed in 147.0-1)
debian
CVE-2024-4777P3HIGHCVSS 8.8fixed in firefox 126.0-1 (sid)2024
CVE-2024-4777 [HIGH] CVE-2024-4777: firefox - Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thunderbird 1...
Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thunderbird 115.10. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
Scope: local
sid: resolved (fixed i
debian
CVE-2025-1010P3HIGHCVSS 8.8fixed in firefox 135.0-1 (sid)2025
CVE-2025-1010 [HIGH] CVE-2025-1010: firefox - An attacker could have caused a use-after-free via the Custom Highlight API, lea...
An attacker could have caused a use-after-free via the Custom Highlight API, leading to a potentially exploitable crash. This vulnerability affects Firefox < 135, Firefox ESR < 115.20, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird < 135.
Scope: local
sid: resolved (fixed in 135.0-1)
debian
CVE-2026-4690P3HIGHCVSS 8.6fixed in firefox 149.0-1 (sid)2026
CVE-2026-4690 [HIGH] CVE-2026-4690: firefox - Sandbox escape due to incorrect boundary conditions, integer overflow in the XPC...
Sandbox escape due to incorrect boundary conditions, integer overflow in the XPCOM component. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.
Scope: local
sid: resolved (fixed in 149.0-1)
debian
CVE-2018-5156P3CRITICALCVSS 9.8fixed in firefox 61.0-1 (sid)2018
CVE-2018-5156 [CRITICAL] CVE-2018-5156: firefox - A vulnerability can occur when capturing a media stream when the media source ty...
A vulnerability can occur when capturing a media stream when the media source type is changed as the capture is occurring. This can result in stream data being cast to the wrong type causing a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.
Scope: local
sid: resolved (fixed in 61
debian
CVE-2026-4687P3HIGHCVSS 8.6fixed in firefox 149.0-1 (sid)2026
CVE-2026-4687 [HIGH] CVE-2026-4687: firefox - Sandbox escape due to incorrect boundary conditions in the Telemetry component. ...
Sandbox escape due to incorrect boundary conditions in the Telemetry component. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.
Scope: local
sid: resolved (fixed in 149.0-1)
debian
CVE-2024-1553P3HIGHCVSS 8.1fixed in firefox 123.0-1 (sid)2024
CVE-2024-1553 [HIGH] CVE-2024-1553: firefox - Memory safety bugs present in Firefox 122, Firefox ESR 115.7, and Thunderbird 11...
Memory safety bugs present in Firefox 122, Firefox ESR 115.7, and Thunderbird 115.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 123, Firefox ESR < 115.8, and Thunderbird < 115.8.
Scope: local
sid: resolved (fixed in 12
debian
CVE-2025-5269P3HIGHCVSS 8.1fixed in firefox-esr 128.11.0esr-1~deb12u1 (bookworm)2025
CVE-2025-5269 [HIGH] CVE-2025-5269: firefox-esr - Memory safety bug present in Firefox ESR 128.10, and Thunderbird 128.10. This bu...
Memory safety bug present in Firefox ESR 128.10, and Thunderbird 128.10. This bug showed evidence of memory corruption and we presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 128.11 and Thunderbird < 128.11.
Scope: local
bookworm: resolved (fixed in 128.11.0esr-1~deb12u1)
bullseye: resol
debian
CVE-2019-9796P3CRITICALCVSS 9.8fixed in firefox 66.0-1 (sid)2019
CVE-2019-9796 [CRITICAL] CVE-2019-9796: firefox - A use-after-free vulnerability can occur when the SMIL animation controller inco...
A use-after-free vulnerability can occur when the SMIL animation controller incorrectly registers with the refresh driver twice when only a single registration is expected. When a registration is later freed with the removal of the animation controller element, the refresh driver incorrectly leaves a dangling pointer to the driver's observer array. This vulnerabil
debian
CVE-2019-9790P3CRITICALCVSS 9.8fixed in firefox 66.0-1 (sid)2019
CVE-2019-9790 [CRITICAL] CVE-2019-9790: firefox - A use-after-free vulnerability can occur when a raw pointer to a DOM element on ...
A use-after-free vulnerability can occur when a raw pointer to a DOM element on a page is obtained using JavaScript and the element is then removed while still in use. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.6, Firefox ESR < 60.6, and Firefox < 66.
Scope: local
sid: resolved (fixed in 66.0-1)
debian
CVE-2019-9795P3CRITICALCVSS 9.8fixed in firefox 66.0-1 (sid)2019
CVE-2019-9795 [CRITICAL] CVE-2019-9795: firefox - A vulnerability where type-confusion in the IonMonkey just-in-time (JIT) compile...
A vulnerability where type-confusion in the IonMonkey just-in-time (JIT) compiler could potentially be used by malicious JavaScript to trigger a potentially exploitable crash. This vulnerability affects Thunderbird < 60.6, Firefox ESR < 60.6, and Firefox < 66.
Scope: local
sid: resolved (fixed in 66.0-1)
debian
CVE-2019-9819P3CRITICALCVSS 9.8fixed in firefox 67.0-2 (sid)2019
CVE-2019-9819 [CRITICAL] CVE-2019-9819: firefox - A vulnerability where a JavaScript compartment mismatch can occur while working ...
A vulnerability where a JavaScript compartment mismatch can occur while working with the fetch API, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.
Scope: local
sid: resolved (fixed in 67.0-2)
debian
CVE-2019-9820P3CRITICALCVSS 9.8fixed in firefox 67.0-2 (sid)2019
CVE-2019-9820 [CRITICAL] CVE-2019-9820: firefox - A use-after-free vulnerability can occur in the chrome event handler when it is ...
A use-after-free vulnerability can occur in the chrome event handler when it is freed while still in use. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.7, Firefox < 67, and Firefox ESR < 60.7.
Scope: local
sid: resolved (fixed in 67.0-2)
debian
CVE-2022-45406P3CRITICALCVSS 9.8fixed in firefox 107.0-1 (sid)2022
CVE-2022-45406 [CRITICAL] CVE-2022-45406: firefox - If an out-of-memory condition occurred when creating a JavaScript global, a Java...
If an out-of-memory condition occurred when creating a JavaScript global, a JavaScript realm may be deleted while references to it lived on in a BaseShape. This could lead to a use-after-free causing a potentially exploitable crash. This vulnerability affects Firefox ESR < 102.5, Thunderbird < 102.5, and Firefox < 107.
Scope: local
sid: resolved (fixed in 107.0-
debian
CVE-2019-15903P3LOWCVSS 7.5fixed in expat 2.2.7-2 (bookworm)2019
CVE-2019-15903 [HIGH] CVE-2019-15903: chromium - In libexpat before 2.2.8, crafted XML input could fool the parser into changing ...
In libexpat before 2.2.8, crafted XML input could fool the parser into changing from DTD parsing to document parsing too early; a consecutive call to XML_GetCurrentLineNumber (or XML_GetCurrentColumnNumber) then resulted in a heap-based buffer over-read.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
debian
CVE-2021-4127P3CRITICALCVSS 9.8fixed in firefox-esr 78.9.0esr-1 (bookworm)2021
CVE-2021-4127 [CRITICAL] CVE-2021-4127: firefox-esr - An out of date graphics library (Angle) likely contained vulnerabilities that co...
An out of date graphics library (Angle) likely contained vulnerabilities that could potentially be exploited. This vulnerability affects Thunderbird < 78.9 and Firefox ESR < 78.9.
Scope: local
bookworm: resolved (fixed in 78.9.0esr-1)
bullseye: resolved (fixed in 78.9.0esr-1)
forky: resolved (fixed in 78.9.0esr-1)
sid: resolved (fixed in 78.9.0esr-1)
trixie: r
debian
CVE-2022-31747P3CRITICALCVSS 9.8fixed in firefox 101.0-1 (sid)2022
CVE-2022-31747 [CRITICAL] CVE-2022-31747: firefox - Mozilla developers Andrew McCreight, Nicolas B. Pierron, and the Mozilla Fuzzing...
Mozilla developers Andrew McCreight, Nicolas B. Pierron, and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 100 and Firefox ESR 91.9. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 91.10,
debian
CVE-2023-4057P3CRITICALCVSS 9.8fixed in firefox 116.0-1 (sid)2023
CVE-2023-4057 [CRITICAL] CVE-2023-4057: firefox - Memory safety bugs present in Firefox 115, Firefox ESR 115.0, and Thunderbird 11...
Memory safety bugs present in Firefox 115, Firefox ESR 115.0, and Thunderbird 115.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 116, Firefox ESR < 115.1, and Thunderbird < 115.1.
Scope: local
sid: resolved (fixed i
debian
CVE-2022-26384P3CRITICALCVSS 9.6fixed in firefox 98.0-1 (sid)2022
CVE-2022-26384 [CRITICAL] CVE-2022-26384: firefox - If an attacker could control the contents of an iframe sandboxed with <code>allo...
If an attacker could control the contents of an iframe sandboxed with allow-popups but not allow-scripts, they were able to craft a link that, when clicked, would lead to JavaScript execution in violation of the sandbox. This vulnerability affects Firefox < 98, Firefox ESR < 91.7, and Thunderbird < 91.7.
Scope: local
sid: resolved (fixed in 98.0-1)
debian