cbcvebase.

Debian Thunderbird vulnerabilities

864 known vulnerabilities affecting debian/thunderbird.

Total CVEs
864
CISA KEV
10
actively exploited
Public exploits
23
Exploited in wild
16
Severity breakdown
CRITICAL166HIGH358MEDIUM317LOW23

Vulnerabilities

Page 44 of 44
CVE-2024-2616P4LOWCVSS 2.7fixed in firefox-esr 115.9.0esr-1~deb12u1 (bookworm)2024
CVE-2024-2616 [LOW] CVE-2024-2616: firefox-esr - To harden ICU against exploitation, the behavior for out-of-memory conditions wa... To harden ICU against exploitation, the behavior for out-of-memory conditions was changed to crash instead of attempt to continue. This vulnerability affects Firefox ESR < 115.9 and Thunderbird < 115.9. Scope: local bookworm: resolved (fixed in 115.9.0esr-1~deb12u1) bullseye: resolved (fixed in 115.9.0esr-1~deb11u1) forky: resolved (fixed in 115.9.0esr-1) sid: reso
debian
CVE-2021-29948P4LOWCVSS 2.5fixed in thunderbird 1:78.10.0-1 (bookworm)2021
CVE-2021-29948 [LOW] CVE-2021-29948: thunderbird - Signatures are written to disk before and read during verification, which might ... Signatures are written to disk before and read during verification, which might be subject to a race condition when a malicious local process or user is replacing the file. This vulnerability affects Thunderbird < 78.10. Scope: local bookworm: resolved (fixed in 1:78.10.0-1) bullseye: resolved (fixed in 1:78.10.0-1) forky: resolved (fixed in 1:78.10.0-1) sid: res
debian
CVE-2006-4569P4LOWCVSS 2.6fixed in firefox 1.5.dfsg+1.5.0.7-1 (sid)2006
CVE-2006-4569 [LOW] CVE-2006-4569: firefox - The popup blocker in Mozilla Firefox before 1.5.0.7 opens the "blocked popups" d... The popup blocker in Mozilla Firefox before 1.5.0.7 opens the "blocked popups" display in the context of the Location bar instead of the subframe from which the popup originated, which might make it easier for remote user-assisted attackers to conduct cross-site scripting (XSS) attacks. Scope: local sid: resolved (fixed in 1.5.dfsg+1.5.0.7-1)
debian
CVE-2005-2353P4LOWCVSS 2.1fixed in firefox 1.5.dfsg+1.5.0.2-1 (sid)2005
CVE-2005-2353 [LOW] CVE-2005-2353: firefox - run-mozilla.sh in Thunderbird, with debugging enabled, allows local users to cre... run-mozilla.sh in Thunderbird, with debugging enabled, allows local users to create or overwrite arbitrary files via a symlink attack on temporary files. Scope: local sid: resolved (fixed in 1.5.dfsg+1.5.0.2-1)
debian
Debian Thunderbird vulnerabilities | cvebase