Known vulnerabilities in thunderbird (Debian package) 1:68.3.0-2~deb8u1 - page 2

Vendor: Debian
Version: 1:68.3.0-2~deb8u1
Software CPE: cpe:2.3:o:debian:thunderbird_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 35
Public exploits: 1
Known exploited (KEV): 1
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting thunderbird (Debian package) version 1:68.3.0-2~deb8u1 thunderbird (Debian package) 1:68.3.0-2~deb8u1 is affected by 35 vulnerabilities: 1 critical, 14 high, 14 medium, 6 low Critical High Medium Low

Vulnerabilities (35)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU25859 - Memory corruption
CVE-2020-6814
CWE-119 High
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 30 more
#VU25857 - Exposure of sensitive information to an unauthorized actor
CVE-2020-6812
CWE-200 Low
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 28 more
#VU25855 - Improper input validation
CVE-2020-6811
CWE-20 Low
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 29 more
#VU25851 - Use After Free
CVE-2020-6807
CWE-416 High
No
No
1:68.6.0-1~deb9u1, 1:68.6.0-1~deb10u1 10.03.2020 SB2020031006
SB2020031019
SB2020031130
and 29 more
#VU25129 - Use of Insufficiently Random Values
CVE-2020-6792
CWE-330 Low
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more
#VU25128 - NULL Pointer Dereference
CVE-2020-6795
CWE-476 Medium
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more
#VU25127 - Cleartext Storage of Sensitive Information
CVE-2020-6794
CWE-312 Low
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more
#VU25126 - Out-of-bounds read
CVE-2020-6793
CWE-125 Medium
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021109
SB2020021204
SB2020021308
and 11 more
#VU25124 - Memory corruption
CVE-2020-6800
CWE-119 High
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021108
SB2020021109
SB2020021110
and 26 more
#VU25122 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-6798
CWE-94 Medium
No
No
1:68.5.0-1~deb9u1, 1:68.5.0-1~deb10u1 11.02.2020 SB2020021108
SB2020021109
SB2020021110
and 26 more
#VU24147 - Type confusion
CVE-2019-17026
CWE-843 Critical
Public exploit available
Exploited
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 08.01.2020 SB2020010819
SB2020010919
SB2020010922
and 21 more
#VU24062 - Memory corruption
CVE-2019-17024
CWE-119 High
No
No
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU24060 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-17022
CWE-79 Medium
No
No
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU24055 - Type confusion
CVE-2019-17017
CWE-843 Medium
No
No
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 20 more
#VU24054 - Improper Control of Generation of Code ('Code Injection')
CVE-2019-17016
CWE-94 Medium
No
No
1:68.4.1-1~deb9u1, 1:68.4.1-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more


Showing elements 21 - 40 out of 35