Known vulnerabilities in thunderbird (Debian package) 1:60.7.1-1~deb8u1 - page 2

Vendor: Debian
Version: 1:60.7.1-1~deb8u1
Software CPE: cpe:2.3:o:debian:thunderbird_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 45
Public exploits: 8
Known exploited (KEV): 3
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting thunderbird (Debian package) version 1:60.7.1-1~deb8u1 thunderbird (Debian package) 1:60.7.1-1~deb8u1 is affected by 45 vulnerabilities: 2 critical, 17 high, 16 medium, 10 low Critical High Medium Low

Vulnerabilities (45)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU25129 - Use of Insufficiently Random Values
CVE-2020-6792
CWE-330 Low
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more
#VU25128 - NULL Pointer Dereference
CVE-2020-6795
CWE-476 Medium
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more
#VU25127 - Cleartext Storage of Sensitive Information
CVE-2020-6794
CWE-312 Low
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more
#VU25124 - Memory corruption
CVE-2020-6800
CWE-119 High
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021108
SB2020021109
SB2020021110
and 26 more
#VU25122 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-6798
CWE-94 Medium
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021108
SB2020021109
SB2020021110
and 26 more
#VU24147 - Type confusion
CVE-2019-17026
CWE-843 Critical
Public exploit available
Exploited
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 08.01.2020 SB2020010819
SB2020010919
SB2020010922
and 21 more
#VU24062 - Memory corruption
CVE-2019-17024
CWE-119 High
No
No
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU24060 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-17022
CWE-79 Medium
No
No
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU24055 - Type confusion
CVE-2019-17017
CWE-843 Medium
No
No
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 20 more
#VU24054 - Improper Control of Generation of Code ('Code Injection')
CVE-2019-17016
CWE-94 Medium
No
No
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU22173 - Memory corruption
CVE-2019-11764
CWE-119 High
No
No
1:68.2.2-1~deb9u1, 1:68.2.2-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22168 - Protection Mechanism Failure
CVE-2019-11763
CWE-693 Low
No
No
1:68.2.2-1~deb9u1, 1:68.2.2-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22167 - Permissions, Privileges, and Access Controls
CVE-2019-11762
CWE-264 Low
No
No
1:68.2.2-1~deb9u1, 1:68.2.2-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22166 - Permissions, Privileges, and Access Controls
CVE-2019-11761
CWE-264 Low
No
No
1:68.2.2-1~deb9u1, 1:68.2.2-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22165 - Stack-based buffer overflow
CVE-2019-11760
CWE-121 Medium
No
No
1:68.2.2-1~deb9u1, 1:68.2.2-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22164 - Stack-based buffer overflow
CVE-2019-11759
CWE-121 Low
No
No
1:68.2.2-1~deb9u1, 1:68.2.2-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22163 - Use After Free
CVE-2019-11757
CWE-416 High
No
No
1:68.2.2-1~deb9u1, 1:68.2.2-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU21371 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2019-11755
CWE-451 Low
No
No
1:68.2.2-1~deb9u1, 1:68.2.2-1~deb10u1 26.09.2019 SB2019092612
SB2019092613
SB2019112109
and 3 more
#VU21091 - Out-of-bounds read
CVE-2019-15903
CWE-125 Medium
Public exploit available
No
1:68.2.2-1~deb9u1, 1:68.2.2-1~deb10u1 12.09.2019 SB2019091209
SB2019091210
SB2019091701
and 61 more
#VU18860 - Permissions, Privileges, and Access Controls
CVE-2019-11708
CWE-264 High
Public exploit available
Exploited
1:60.7.2-1~deb9u1 20.06.2019 SB2019062002
SB2019062101
SB2019062102
and 19 more


Showing elements 21 - 40 out of 45