Known vulnerabilities in thunderbird (Debian package) 1:68.1.1-1~exp1

Vendor: Debian
Version: 1:68.1.1-1~exp1
Software CPE: cpe:2.3:o:debian:thunderbird_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 37
Public exploits: 2
Known exploited (KEV): 1
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting thunderbird (Debian package) version 1:68.1.1-1~exp1 thunderbird (Debian package) 1:68.1.1-1~exp1 is affected by 37 vulnerabilities: 1 critical, 14 high, 11 medium, 11 low Critical High Medium Low

Vulnerabilities (37)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU28569 - Cleartext Transmission of Sensitive Information
CVE-2020-12398
CWE-319 Medium
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 04.06.2020 SB2020060409
SB2020060422
SB2020060604
and 11 more
#VU28527 - Memory corruption
CVE-2020-12410
CWE-119 High
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 24 more
#VU28524 - Type confusion
CVE-2020-12406
CWE-843 High
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 02.06.2020 SB2020060216
SB2020060215
SB2020060301
and 25 more
#VU28523 - Use After Free
CVE-2020-12405
CWE-416 High
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 25 more
#VU28522 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-12399
CWE-362 Medium
No
No
1:68.9.0-1~deb9u1, 1:68.9.0-1~deb10u1 02.06.2020 SB2020060214
SB2020060215
SB2020060216
and 15 more
#VU27572 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-12397
CWE-451 Low
No
No
1:68.8.0-1~deb8u1, 1:68.8.0-1~deb9u1, 1:68.8.0-1~deb10u1 06.05.2020 SB2020050618
SB2020050901
SB2020051105
and 11 more
#VU27538 - Memory corruption
CVE-2020-12395
CWE-119 High
No
No
1:68.8.0-1~deb8u1, 1:68.8.0-1~deb9u1, 1:68.8.0-1~deb10u1 05.05.2020 SB2020050511
SB2020050518
SB2020050606
and 29 more
#VU27535 - Improper input validation
CVE-2020-12392
CWE-20 Low
No
No
1:68.8.0-1~deb8u1, 1:68.8.0-1~deb9u1, 1:68.8.0-1~deb10u1 05.05.2020 SB2020050511
SB2020050518
SB2020050606
and 29 more
#VU27532 - Memory corruption
CVE-2020-6831
CWE-119 High
No
No
1:68.8.0-1~deb8u1, 1:68.8.0-1~deb9u1, 1:68.8.0-1~deb10u1 05.05.2020 SB2020050511
SB2020050517
SB2020050518
and 37 more
#VU27529 - Use After Free
CVE-2020-12387
CWE-416 High
No
No
1:68.8.0-1~deb8u1, 1:68.8.0-1~deb9u1, 1:68.8.0-1~deb10u1 05.05.2020 SB2020050511
SB2020050518
SB2020050606
and 29 more
#VU25859 - Memory corruption
CVE-2020-6814
CWE-119 High
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 30 more
#VU25857 - Exposure of sensitive information to an unauthorized actor
CVE-2020-6812
CWE-200 Low
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 28 more
#VU25856 - Out-of-bounds read
CVE-2019-20503
CWE-125 Medium
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031005
SB2020031006
SB2020031019
and 54 more
#VU25855 - Improper input validation
CVE-2020-6811
CWE-20 Low
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 29 more
#VU25851 - Use After Free
CVE-2020-6807
CWE-416 High
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 29 more
#VU25850 - Out-of-bounds read
CVE-2020-6806
CWE-125 High
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 29 more
#VU25849 - Use After Free
CVE-2020-6805
CWE-416 High
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 29 more
#VU25129 - Use of Insufficiently Random Values
CVE-2020-6792
CWE-330 Low
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more
#VU25127 - Cleartext Storage of Sensitive Information
CVE-2020-6794
CWE-312 Low
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more
#VU25126 - Out-of-bounds read
CVE-2020-6793
CWE-125 Medium
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more


Showing elements 1 - 20 out of 37