Known vulnerabilities in thunderbird (Debian package) 1:60.2.1-2~deb9u1

Vendor: Debian
Version: 1:60.2.1-2~deb9u1
Software CPE: cpe:2.3:o:debian:thunderbird_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 69
Public exploits: 4
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting thunderbird (Debian package) version 1:60.2.1-2~deb9u1 thunderbird (Debian package) 1:60.2.1-2~deb9u1 is affected by 69 vulnerabilities: 3 critical, 32 high, 21 medium, 13 low Critical High Medium Low

Vulnerabilities (69)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU60414 - Improper control of a resource through its lifetime
CVE-2022-22763
CWE-664 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 29 more
#VU60413 - Memory corruption
CVE-2022-22764
CWE-119 High
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more
#VU60411 - Security Features
CVE-2022-22761
CWE-254 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more
#VU60409 - Exposure of sensitive information to an unauthorized actor
CVE-2022-22760
CWE-200 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 31 more
#VU60406 - Permissions, Privileges, and Access Controls
CVE-2022-22759
CWE-264 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 31 more
#VU60398 - Insufficient UI Warning of Dangerous Operations
CVE-2022-22756
CWE-357 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more
#VU60395 - Permissions, Privileges, and Access Controls
CVE-2022-22754
CWE-264 High
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 29 more
#VU29457 - Improper Certificate Validation
CVE-2020-12421
CWE-295 Low
No
No
1:68.10.0-1~deb9u1, 1:68.10.0-1~deb10u1 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 24 more
#VU29456 - Use After Free
CVE-2020-12420
CWE-416 High
No
No
1:68.10.0-1~deb9u1, 1:68.10.0-1~deb10u1 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 24 more
#VU29455 - Use After Free
CVE-2020-12419
CWE-416 High
No
No
1:68.10.0-1~deb9u1, 1:68.10.0-1~deb10u1 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 24 more
#VU29453 - Out-of-bounds read
CVE-2020-12418
CWE-125 Medium
No
No
1:68.10.0-1~deb9u1, 1:68.10.0-1~deb10u1 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 24 more
#VU29452 - Improper input validation
CVE-2020-12417
CWE-20 Medium
No
No
1:68.10.0-1~deb9u1, 1:68.10.0-1~deb10u1 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 22 more
#VU28569 - Cleartext Transmission of Sensitive Information
CVE-2020-12398
CWE-319 Medium
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 04.06.2020 SB2020060409
SB2020060422
SB2020060604
and 11 more
#VU28527 - Memory corruption
CVE-2020-12410
CWE-119 High
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 24 more
#VU28524 - Type confusion
CVE-2020-12406
CWE-843 High
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 02.06.2020 SB2020060216
SB2020060215
SB2020060301
and 25 more
#VU28523 - Use After Free
CVE-2020-12405
CWE-416 High
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 25 more
#VU28522 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-12399
CWE-362 Medium
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 02.06.2020 SB2020060214
SB2020060215
SB2020060216
and 15 more
#VU26653 - Memory corruption
CVE-2020-6825
CWE-119 High
No
No
1:68.7.0-1~deb9u1, 1:68.7.0-1~deb10u1 07.04.2020 SB2020040743
SB2020040744
SB2020040748
and 25 more
#VU26650 - Out-of-bounds write
CVE-2020-6822
CWE-787 High
No
No
1:68.7.0-1~deb9u1, 1:68.7.0-1~deb10u1 07.04.2020 SB2020040743
SB2020040744
SB2020040748
and 24 more
#VU26649 - Out-of-bounds read
CVE-2020-6821
CWE-125 Medium
No
No
1:68.7.0-1~deb9u1, 1:68.7.0-1~deb10u1 07.04.2020 SB2020040743
SB2020040744
SB2020040748
and 26 more


Showing elements 1 - 20 out of 69