Known vulnerabilities in thunderbird (Ubuntu package) - page 19

Software CPE: cpe:2.3:o:canonical:thunderbird_ubuntu_package:*:*:*:*:*:ubuntu:*:*
Total vulnerabilities: 606
Public exploits: 23
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird (Ubuntu package) thunderbird (Ubuntu package) is affected by 606 known vulnerabilities: 6 critical, 267 high, 184 medium, 149 low Critical High Medium Low

Vulnerabilities (606)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU68408 - Memory corruption
CVE-2022-42932
CWE-119 High
No
No
1:102.4.2+build2-0ubuntu0.18.04.1, 1:102.4.2+build2-0ubuntu0.20.04.1, 1:102.4.2+build2-0ubuntu0.22.04.1, 1:102.4.2+build2-0ubuntu0.22.10.1 18.10.2022 SB2022101840
SB2022101877
SB2022102007
and 30 more
#VU66922 - Improper input validation
CVE-2022-36059
CWE-20 Low
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 01.09.2022 SB2022090140
SB2022090306
SB2022090669
and 11 more
#VU66921 - Security Features
CVE-2022-3034
CWE-254 Medium
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66920 - Security Features
CVE-2022-3032
CWE-254 Low
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 11 more
#VU66919 - Exposure of sensitive information to an unauthorized actor
CVE-2022-3033
CWE-200 Medium
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 01.09.2022 SB2022090140
SB2022090669
SB2022091542
and 13 more
#VU66725 - Use After Free
CVE-2022-38476
CWE-416 Low
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 23.08.2022 SB2022082315
SB2022082316
SB2022082515
and 27 more
#VU66724 - Memory corruption
CVE-2022-38478
CWE-119 High
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 36 more
#VU66723 - Memory corruption
CVE-2022-38477
CWE-119 High
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 23.08.2022 SB2022082315
SB2022082316
SB2022082502
and 28 more
#VU66720 - Permissions, Privileges, and Access Controls
CVE-2022-38473
CWE-264 Medium
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 36 more
#VU66719 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-38472
CWE-451 Medium
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 23.08.2022 SB2022082315
SB2022082316
SB2022082411
and 35 more
#VU65796 - Memory corruption
CVE-2022-2505
CWE-119 High
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 26.07.2022 SB2022072633
SB2022072841
SB2022072906
and 25 more
#VU65795 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2022-36318
CWE-79 Medium
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 26.07.2022 SB2022072633
SB2022072634
SB2022072815
and 36 more
#VU65793 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-36319
CWE-451 Low
No
No
1:102.2.2+build1-0ubuntu0.18.04.1, 1:102.2.2+build1-0ubuntu0.20.04.1, 1:102.2.2+build1-0ubuntu0.22.04.1 26.07.2022 SB2022072633
SB2022072634
SB2022072815
and 36 more
#VU64769 - Improper Verification of Cryptographic Signature
CVE-2022-2226
CWE-347 Low
No
No
1:91.11.0+build2-0ubuntu0.18.04.1, 1:91.11.0+build2-0ubuntu0.20.04.1, 1:91.11.0+build2-0ubuntu0.21.10.1, 1:91.11.0+build2-0ubuntu0.22.04.1 29.06.2022 SB2022062903
SB2022070102
SB2022070103
and 15 more
#VU64762 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-2200
CWE-94 Medium
No
No
1:91.11.0+build2-0ubuntu0.18.04.1, 1:91.11.0+build2-0ubuntu0.20.04.1, 1:91.11.0+build2-0ubuntu0.21.10.1, 1:91.11.0+build2-0ubuntu0.22.04.1 29.06.2022 SB2022062901
SB2022062902
SB2022062903
and 36 more
#VU63886 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-1834
CWE-451 Medium
No
No
1:91.11.0+build2-0ubuntu0.18.04.1, 1:91.11.0+build2-0ubuntu0.20.04.1, 1:91.11.0+build2-0ubuntu0.21.10.1, 1:91.11.0+build2-0ubuntu0.22.04.1 31.05.2022 SB2022053126
SB2022060216
SB2022060503
and 14 more
#VU63876 - Memory corruption
CVE-2022-31740
CWE-119 High
No
No
1:91.11.0+build2-0ubuntu0.18.04.1, 1:91.11.0+build2-0ubuntu0.20.04.1, 1:91.11.0+build2-0ubuntu0.21.10.1, 1:91.11.0+build2-0ubuntu0.22.04.1 31.05.2022 SB2022053116
SB2022053126
SB2022060107
and 33 more
#VU63874 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-31738
CWE-451 Medium
No
No
1:91.11.0+build2-0ubuntu0.18.04.1, 1:91.11.0+build2-0ubuntu0.20.04.1, 1:91.11.0+build2-0ubuntu0.21.10.1, 1:91.11.0+build2-0ubuntu0.22.04.1 31.05.2022 SB2022053116
SB2022053126
SB2022060107
and 33 more
#VU63873 - Out-of-bounds write
CVE-2022-31737
CWE-787 High
No
No
1:91.11.0+build2-0ubuntu0.18.04.1, 1:91.11.0+build2-0ubuntu0.20.04.1, 1:91.11.0+build2-0ubuntu0.21.10.1, 1:91.11.0+build2-0ubuntu0.22.04.1 31.05.2022 SB2022053116
SB2022053126
SB2022060107
and 33 more
#VU63872 - Exposure of sensitive information to an unauthorized actor
CVE-2022-31736
CWE-200 Low
No
No
1:91.11.0+build2-0ubuntu0.18.04.1, 1:91.11.0+build2-0ubuntu0.20.04.1, 1:91.11.0+build2-0ubuntu0.21.10.1, 1:91.11.0+build2-0ubuntu0.22.04.1 31.05.2022 SB2022053116
SB2022053126
SB2022060107
and 33 more


Showing elements 361 - 380 out of 606