Known vulnerabilities in thunderbird (Alpine package) - page 2

Software CPE: cpe:2.3:o:alpine:thunderbird_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 66
Public exploits: 3
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird (Alpine package) thunderbird (Alpine package) is affected by 66 known vulnerabilities: 3 critical, 28 high, 25 medium, 10 low Critical High Medium Low

Vulnerabilities (66)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48755 - Stack-based buffer overflow
CVE-2020-26970
CWE-121 High
No
No
78.5.1-r0 02.12.2020 SB2020120213
SB2020120607
SB2020120704
and 9 more
#VU48472 - Memory corruption
CVE-2020-26968
CWE-119 High
No
No
78.5.1-r0 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48470 - Exposure of sensitive information to an unauthorized actor
CVE-2020-26966
CWE-200 Low
No
No
78.5.1-r0 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 3 more
#VU48466 - Improperly Implemented Security Check for Standard
CVE-2020-26961
CWE-358 Medium
No
No
78.5.1-r0 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48465 - Use After Free
CVE-2020-26960
CWE-416 High
No
No
78.5.1-r0 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48464 - Use After Free
CVE-2020-26959
CWE-416 Medium
No
No
78.5.1-r0 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48463 - Permissions, Privileges, and Access Controls
CVE-2020-26958
CWE-264 Medium
No
No
78.5.1-r0 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48462 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-26956
CWE-79 Medium
No
No
78.5.1-r0 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48461 -
CVE-2020-26953
Medium
No
No
78.5.1-r0 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48458 - Improper input validation
CVE-2020-26951
CWE-20 Medium
No
No
78.5.1-r0 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 25 more
#VU48235 - Use After Free
CVE-2020-26950
CWE-416 High
Available
No
78.5.1-r0 09.11.2020 SB2020110949
SB2020110950
SB2020111001
and 25 more
#VU29457 - Improper Certificate Validation
CVE-2020-12421
CWE-295 Low
No
No
68.10.0-r0 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 24 more
#VU29456 - Use After Free
CVE-2020-12420
CWE-416 High
No
No
68.10.0-r0 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 24 more
#VU29455 - Use After Free
CVE-2020-12419
CWE-416 High
No
No
68.10.0-r0 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 24 more
#VU29453 - Out-of-bounds read
CVE-2020-12418
CWE-125 Medium
No
No
68.10.0-r0 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 24 more
#VU29452 - Improper input validation
CVE-2020-12417
CWE-20 Medium
No
No
68.10.0-r0 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 22 more
#VU28569 - Cleartext Transmission of Sensitive Information
CVE-2020-12398
CWE-319 Medium
No
No
68.9.0-r0 04.06.2020 SB2020060409
SB2020060422
SB2020060604
and 11 more
#VU28527 - Memory corruption
CVE-2020-12410
CWE-119 High
No
No
68.9.0-r0 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 24 more
#VU28523 - Use After Free
CVE-2020-12405
CWE-416 High
No
No
68.9.0-r0 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 25 more
#VU28522 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-12399
CWE-362 Medium
No
No
68.9.0-r0 02.06.2020 SB2020060214
SB2020060215
SB2020060216
and 15 more


Showing elements 21 - 40 out of 66