cbcvebase.

Mozilla Thunderbird vulnerabilities

2,009 known vulnerabilities affecting mozilla/thunderbird.

Total CVEs
2,009
CISA KEV
14
actively exploited
Public exploits
63
Exploited in wild
25
Severity breakdown
CRITICAL666HIGH636MEDIUM667LOW29UNKNOWN11

Vulnerabilities

Page 51 of 101
CVE-2011-2997P3CRITICALCVSS 10.0≤ 6.0.2v0.1+96 more2011-09-29
CVE-2011-2997 [CRITICAL] CVE-2011-2997: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 6, Thunderbird before Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2011-2985P3CRITICALCVSS 10.0≤ 5.0v0.1+79 more2011-08-18
CVE-2011-2985 [CRITICAL] CVE-2011-2985: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 5, Thunder Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 5, Thunderbird before 6, SeaMonkey 2.x before 2.3, and possibly other products allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2012-3983P3CRITICALCVSS 10.0fixed in 16.02012-10-10
CVE-2012-3983 [CRITICAL] CWE-119 CVE-2012-3983: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0, Thunderbi Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2011-2982P3CRITICALCVSS 10.0v3.0v3.0.1+40 more2011-08-18
CVE-2011-2982 [CRITICAL] CVE-2011-2982: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.20, Thunder Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.20, Thunderbird 2.x and 3.x before 3.1.12, SeaMonkey 1.x and 2.x, and possibly other products allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2020-12426P3HIGHCVSS 8.8≥ 0, < 1:78.8.1+build1-0ubuntu0.18.04.1≥ 0, < 1:78.7.1+build1-0ubuntu0.20.04.12020-07-01
CVE-2020-12426 [HIGH] CVE-2020-12426: Mozilla developers and community members reported memory safety bugs present in Firefox 77 Mozilla developers and community members reported memory safety bugs present in Firefox 77. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 78.
osv
CVE-2013-1701P3CRITICALCVSS 10.0≤ 17.0.7v17.0+6 more2013-08-07
CVE-2013-1701 [CRITICAL] CVE-2013-1701: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 23.0, Firefox E Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vector
nvd
CVE-2021-38504P3HIGHCVSS 8.8fixed in 91.3.0≥ unspecified, < 91.32021-12-08
CVE-2021-38504 [HIGH] CWE-416 CVE-2021-38504: When interacting with an HTML input element's file picker dialog with webkitdirectory set, a use-aft When interacting with an HTML input element's file picker dialog with webkitdirectory set, a use-after-free could have resulted, leading to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 94, Thunderbird < 91.3, and Firefox ESR < 91.3.
nvdosv
CVE-2011-3660P3CRITICALCVSS 10.0v5.0v6.0+5 more2011-12-21
CVE-2011-3660 [CRITICAL] CVE-2011-3660: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 8.0, Thund Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors that trigger a compartment mismatch associated with the nsDOMMessageE
nvd
CVE-2011-2995P3CRITICALCVSS 10.0≤ 6.0.2v0.1+96 more2011-09-29
CVE-2011-2995 [CRITICAL] CVE-2011-2995: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.23 and 4.x Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
nvd
CVE-2019-11760P3HIGHCVSS 8.8fixed in 68.2vbefore 68.22020-01-08
CVE-2019-11760 [HIGH] CWE-787 CVE-2019-11760: A fixed-size stack buffer could overflow in nrappkit when doing WebRTC signaling. This resulted in a A fixed-size stack buffer could overflow in nrappkit when doing WebRTC signaling. This resulted in a potentially exploitable crash in some instances. This vulnerability affects Firefox < 70, Thunderbird < 68.2, and Firefox ESR < 68.2.
nvdosv
CVE-2020-12416P3HIGHCVSS 8.8≥ 0, < 1:78.8.1+build1-0ubuntu0.18.04.1≥ 0, < 1:78.7.1+build1-0ubuntu0.20.04.12020-07-01
CVE-2020-12416 [HIGH] CVE-2020-12416: A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, resulting in a use-after-free, memory corruption, A VideoStreamEncoder may have been freed in a race condition with VideoBroadcaster::AddOrUpdateSink, resulting in a use-after-free, memory corruption, and a potentially exploitable crash. This vulnerability affects Firefox < 78.
osv
CVE-2017-5412P3HIGHCVSS 7.5fixed in 52.0≥ unspecified, < 522018-06-11
CVE-2017-5412 [HIGH] CWE-119 CVE-2017-5412: A buffer overflow read during SVG filter color value operations, resulting in data exposure. This vu A buffer overflow read during SVG filter color value operations, resulting in data exposure. This vulnerability affects Firefox < 52 and Thunderbird < 52.
nvd
CVE-2012-0468P3CRITICALCVSS 10.0v5.0v6.0+13 more2012-04-25
CVE-2012-0468 [CRITICAL] CWE-119 CVE-2012-0468: The browser engine in Mozilla Firefox 4.x through 11.0, Thunderbird 5.0 through 11.0, and SeaMonkey The browser engine in Mozilla Firefox 4.x through 11.0, Thunderbird 5.0 through 11.0, and SeaMonkey before 2.9 allows remote attackers to cause a denial of service (assertion failure and memory corruption) or possibly execute arbitrary code via vectors related to jsval.h and the js::array_shift function.
nvd
CVE-2021-29946P3HIGHCVSS 8.8fixed in 78.10≥ unspecified, < 78.102021-06-24
CVE-2021-29946 [HIGH] CWE-190 CVE-2021-29946: Ports that were written as an integer overflow above the bounds of a 16-bit integer could have bypas Ports that were written as an integer overflow above the bounds of a 16-bit integer could have bypassed port blocking restrictions when used in the Alt-Svc header. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.
nvdosv
CVE-2012-4204P3CRITICALCVSS 9.3fixed in 17.02012-11-21
CVE-2012-4204 [CRITICAL] CWE-119 CVE-2012-4204: The str_unescape function in the JavaScript engine in Mozilla Firefox before 17.0, Thunderbird befor The str_unescape function in the JavaScript engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.
nvd
CVE-2013-1722P3CRITICALCVSS 9.3≤ 17.0.9v17.0+8 more2013-09-18
CVE-2013-1722 [CRITICAL] CWE-399 CVE-2013-1722: Use-after-free vulnerability in the nsAnimationManager::BuildAnimations function in the Animation Ma Use-after-free vulnerability in the nsAnimationManager::BuildAnimations function in the Animation Manager in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory co
nvd
CVE-2014-1581P3HIGHCVSS 7.5v31.0v31.1.02014-10-15
CVE-2014-1581 [HIGH] CVE-2014-1581: Use-after-free vulnerability in DirectionalityUtils.cpp in Mozilla Firefox before 33.0, Firefox ESR Use-after-free vulnerability in DirectionalityUtils.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to execute arbitrary code via text that is improperly handled during the interaction between directionality resolution and layout.
nvdosv
CVE-2013-5615P3CRITICALCVSS 9.8fixed in 24.22013-12-11
CVE-2013-5615 [CRITICAL] CVE-2013-5615: The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderb The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 does not properly enforce certain typeset restrictions on the generation of GetElementIC typed array stubs, which has unspecified impact and remote attack vectors.
nvd
CVE-2014-1481P3HIGHCVSS 7.5fixed in 24.32014-02-06
CVE-2014-1481 [HIGH] CVE-2014-1481: Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey be Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 allow remote attackers to bypass intended restrictions on window objects by leveraging inconsistency in native getter methods across different JavaScript engines.
nvd
CVE-2022-34480P3HIGHCVSS 8.8≥ 0, < 1:102.2.2+build1-0ubuntu0.20.04.1≥ 0, < 1:102.2.2+build1-0ubuntu0.22.04.12022-07-05
CVE-2022-34480 [HIGH] CVE-2022-34480: Within the lg_init() function, if several allocations succeed but then one fails, an uninitialized pointer would have been freed despite never being a Within the lg_init() function, if several allocations succeed but then one fails, an uninitialized pointer would have been freed despite never being allocated. This vulnerability affects Firefox < 102.
osv
Mozilla Thunderbird vulnerabilities | cvebase