Debian Thunderbird vulnerabilities
864 known vulnerabilities affecting debian/thunderbird.
Total CVEs
864
CISA KEV
10
actively exploited
Public exploits
23
Exploited in wild
16
Severity breakdown
CRITICAL166HIGH358MEDIUM317LOW23
Vulnerabilities
Page 39 of 44
CVE-2022-28286P4MEDIUMCVSS 5.4fixed in firefox 99.0-1 (sid)2022
CVE-2022-28286 [MEDIUM] CVE-2022-28286: firefox - Due to a layout change, iframe contents could have been rendered outside of its ...
Due to a layout change, iframe contents could have been rendered outside of its border. This could have led to user confusion or spoofing attacks. This vulnerability affects Thunderbird < 91.8, Firefox < 99, and Firefox ESR < 91.8.
Scope: local
sid: resolved (fixed in 99.0-1)
debian
CVE-2023-25730P4MEDIUMCVSS 5.4fixed in firefox 110.0-1 (sid)2023
CVE-2023-25730 [MEDIUM] CVE-2023-25730: firefox - A background script invoking <code>requestFullscreen</code> and then blocking th...
A background script invoking requestFullscreen and then blocking the main thread could force the browser into fullscreen mode indefinitely, resulting in potential user confusion or spoofing attacks. This vulnerability affects Firefox < 110, Thunderbird < 102.8, and Firefox ESR < 102.8.
Scope: local
sid: resolved (fixed in 110.0-1)
debian
CVE-2023-6857P4MEDIUMCVSS 5.3fixed in firefox 121.0-1 (sid)2023
CVE-2023-6857 [MEDIUM] CVE-2023-6857: firefox - When resolving a symlink, a race may occur where the buffer passed to `readlink`...
When resolving a symlink, a race may occur where the buffer passed to `readlink` may actually be smaller than necessary. *This bug only affects Firefox on Unix-based operating systems (Android, Linux, MacOS). Windows is unaffected.* This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.
Scope: local
sid: resolved (fixed in 121.0-1)
debian
CVE-2022-1197P4MEDIUMCVSS 5.4fixed in thunderbird 1:91.8.0-1 (bookworm)2022
CVE-2022-1197 [MEDIUM] CVE-2022-1197: thunderbird - When importing a revoked key that specified key compromise as the revocation rea...
When importing a revoked key that specified key compromise as the revocation reason, Thunderbird did not update the existing copy of the key that was not yet revoked, and the existing key was kept as non-revoked. Revocation statements that used another revocation reason, or that didn't specify a revocation reason, were unaffected. This vulnerability affects Thun
debian
CVE-2025-5267P4MEDIUMCVSS 5.4fixed in firefox 139.0-1 (sid)2025
CVE-2025-5267 [MEDIUM] CVE-2025-5267: firefox - A clickjacking vulnerability could have been used to trick a user into leaking s...
A clickjacking vulnerability could have been used to trick a user into leaking saved payment card details to a malicious page. This vulnerability affects Firefox < 139, Firefox ESR < 128.11, Thunderbird < 139, and Thunderbird < 128.11.
Scope: local
sid: resolved (fixed in 139.0-1)
debian
CVE-2006-2781P4HIGHCVSS 6.4fixed in thunderbird 1.5.0.4-1 (bookworm)2006
CVE-2006-2781 [MEDIUM] CVE-2006-2781: thunderbird - Double free vulnerability in nsVCard.cpp in Mozilla Thunderbird before 1.5.0.4 a...
Double free vulnerability in nsVCard.cpp in Mozilla Thunderbird before 1.5.0.4 and SeaMonkey before 1.0.2 allows remote attackers to cause a denial of service (hang) and possibly execute arbitrary code via a VCard that contains invalid base64 characters.
Scope: local
bookworm: resolved (fixed in 1.5.0.4-1)
bullseye: resolved (fixed in 1.5.0.4-1)
forky: resolved
debian
CVE-2025-0243P4MEDIUMCVSS 5.1fixed in firefox 134.0-1 (sid)2025
CVE-2025-0243 [MEDIUM] CVE-2025-0243: firefox - Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, a...
Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Thunderbird < 134, and Thunderbird < 128.6.
S
debian
CVE-2006-0297P4MEDIUMCVSS 5.1fixed in firefox 1.5.dfsg+1.5.0.1-1 (sid)2006
CVE-2006-0297 [MEDIUM] CVE-2006-0297: firefox - Multiple integer overflows in Mozilla Firefox 1.5, Thunderbird 1.5 if Javascript...
Multiple integer overflows in Mozilla Firefox 1.5, Thunderbird 1.5 if Javascript is enabled in mail, and SeaMonkey before 1.0 might allow remote attackers to execute arbitrary code via the (1) EscapeAttributeValue in jsxml.c for E4X, (2) nsSVGCairoSurface::Init in SVG, and (3) nsCanvasRenderingContext2D.cpp in Canvas.
Scope: local
sid: resolved (fixed in 1.5.dfsg+1.
debian
CVE-2006-3804P4HIGHCVSS 5.0fixed in thunderbird 1.5.0.5-1 (bookworm)2006
CVE-2006-3804 [MEDIUM] CVE-2006-3804: thunderbird - Heap-based buffer overflow in Mozilla Thunderbird before 1.5.0.5 and SeaMonkey b...
Heap-based buffer overflow in Mozilla Thunderbird before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote attackers to cause a denial of service (crash) via a VCard attachment with a malformed base64 field, which copies more data than expected due to an integer underflow.
Scope: local
bookworm: resolved (fixed in 1.5.0.5-1)
bullseye: resolved (fixed in 1.5.0.5-1
debian
CVE-2017-7848P4MEDIUMCVSS 5.3fixed in thunderbird 1:52.5.2-1 (bookworm)2017
CVE-2017-7848 [MEDIUM] CVE-2017-7848: thunderbird - RSS fields can inject new lines into the created email structure, modifying the ...
RSS fields can inject new lines into the created email structure, modifying the message body. This vulnerability affects Thunderbird < 52.5.2.
Scope: local
bookworm: resolved (fixed in 1:52.5.2-1)
bullseye: resolved (fixed in 1:52.5.2-1)
forky: resolved (fixed in 1:52.5.2-1)
sid: resolved (fixed in 1:52.5.2-1)
trixie: resolved (fixed in 1:52.5.2-1)
debian
CVE-2017-7823P4MEDIUMCVSS 5.4fixed in firefox 56.0-1 (sid)2017
CVE-2017-7823 [MEDIUM] CVE-2017-7823: firefox - The content security policy (CSP) "sandbox" directive did not create a unique or...
The content security policy (CSP) "sandbox" directive did not create a unique origin for the document, causing it to behave as if the "allow-same-origin" keyword were always specified. This could allow a Cross-Site Scripting (XSS) attack to be launched from unsafe content. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.
Scope: lo
debian
CVE-2018-12383P4MEDIUMCVSS 5.5fixed in firefox 62.0-1 (sid)2018
CVE-2018-12383 [MEDIUM] CVE-2018-12383: firefox - If a user saved passwords before Firefox 58 and then later set a master password...
If a user saved passwords before Firefox 58 and then later set a master password, an unencrypted copy of these passwords is still accessible. This is because the older stored password file was not deleted when the data was copied to a new format starting in Firefox 58. The new master password is added only on the new file. This could allow the exposure of stored p
debian
CVE-2022-36318P4MEDIUMCVSS 5.3fixed in firefox 103.0-1 (sid)2022
CVE-2022-36318 [MEDIUM] CVE-2022-36318: firefox - When visiting directory listings for `chrome://` URLs as source text, some param...
When visiting directory listings for `chrome://` URLs as source text, some parameters were reflected. This vulnerability affects Firefox ESR < 102.1, Firefox ESR < 91.12, Firefox < 103, Thunderbird < 102.1, and Thunderbird < 91.12.
Scope: local
sid: resolved (fixed in 103.0-1)
debian
CVE-2025-26695P4MEDIUMCVSS 5.3fixed in thunderbird 1:128.8.0esr-1~deb12u1 (bookworm)2025
CVE-2025-26695 [MEDIUM] CVE-2025-26695: thunderbird - When requesting an OpenPGP key from a WKD server, an incorrect padding size was ...
When requesting an OpenPGP key from a WKD server, an incorrect padding size was used and a network observer could have learned the length of the requested email address. This vulnerability affects Thunderbird < 136 and Thunderbird < 128.8.
Scope: local
bookworm: resolved (fixed in 1:128.8.0esr-1~deb12u1)
bullseye: resolved (fixed in 1:128.8.0esr-1~deb11u1)
for
debian
CVE-2021-38509P4MEDIUMCVSS 4.3fixed in firefox 94.0-1 (sid)2021
CVE-2021-38509 [MEDIUM] CVE-2021-38509: firefox - Due to an unusual sequence of attacker-controlled events, a Javascript alert() d...
Due to an unusual sequence of attacker-controlled events, a Javascript alert() dialog with arbitrary (although unstyled) contents could be displayed over top an uncontrolled webpage of the attacker's choosing. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.
Scope: local
sid: resolved (fixed in 94.0-1)
debian
CVE-2025-4087P4MEDIUMCVSS 4.8fixed in firefox 138.0-1 (sid)2025
CVE-2025-4087 [MEDIUM] CVE-2025-4087: firefox - A vulnerability was identified in Thunderbird where XPath parsing could trigger ...
A vulnerability was identified in Thunderbird where XPath parsing could trigger undefined behavior due to missing null checks during attribute access. This could lead to out-of-bounds read access and potentially, memory corruption. This vulnerability affects Firefox < 138, Firefox ESR < 128.10, Thunderbird < 138, and Thunderbird < 128.10.
Scope: local
sid: resolved
debian
CVE-2019-11715P4MEDIUMCVSS 6.1fixed in firefox 68.0-1 (sid)2019
CVE-2019-11715 [MEDIUM] CVE-2019-11715: firefox - Due to an error while parsing page content, it is possible for properly sanitize...
Due to an error while parsing page content, it is possible for properly sanitized user input to be misinterpreted and lead to XSS hazards on web sites in certain circumstances. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.
Scope: local
sid: resolved (fixed in 68.0-1)
debian
CVE-2019-11763P4MEDIUMCVSS 6.1fixed in firefox 70.0-1 (sid)2019
CVE-2019-11763 [MEDIUM] CVE-2019-11763: firefox - Failure to correctly handle null bytes when processing HTML entities resulted in...
Failure to correctly handle null bytes when processing HTML entities resulted in Firefox incorrectly parsing these entities. This could have led to HTML comment text being treated as HTML which could have led to XSS in a web application under certain conditions. It could have also led to HTML entities being masked from filters - enabling the use of entities to mas
debian
CVE-2020-12405P4MEDIUMCVSS 5.3fixed in firefox 77.0-1 (sid)2020
CVE-2020-12405 [MEDIUM] CVE-2020-12405: firefox - When browsing a malicious page, a race condition in our SharedWorkerService coul...
When browsing a malicious page, a race condition in our SharedWorkerService could occur and lead to a potentially exploitable crash. This vulnerability affects Thunderbird < 68.9.0, Firefox < 77, and Firefox ESR < 68.9.
Scope: local
sid: resolved (fixed in 77.0-1)
debian
CVE-2019-9797P4MEDIUMCVSS 5.3fixed in firefox 66.0-1 (sid)2019
CVE-2019-9797 [MEDIUM] CVE-2019-9797: firefox - Cross-origin images can be read in violation of the same-origin policy by export...
Cross-origin images can be read in violation of the same-origin policy by exporting an image after using createImageBitmap to read the image and then rendering the resulting bitmap image within a canvas element. This vulnerability affects Firefox < 66.
Scope: local
sid: resolved (fixed in 66.0-1)
debian