Known vulnerabilities in thunderbird (Debian package) 1:68.6.0-1~deb10u1 - page 3

Vendor: Debian
Version: 1:68.6.0-1~deb10u1
Software CPE: cpe:2.3:o:debian:thunderbird_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 129
Public exploits: 7
Known exploited (KEV): 4
Highest CVSSv4 Score: 9.2

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting thunderbird (Debian package) version 1:68.6.0-1~deb10u1 thunderbird (Debian package) 1:68.6.0-1~deb10u1 is affected by 129 vulnerabilities: 4 critical, 55 high, 47 medium, 23 low Critical High Medium Low

Vulnerabilities (129)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU61109 - Improper Access Control
CVE-2022-26386
CWE-284 Low
No
No
1:91.7.0-2~deb10u1, 1:91.7.0-2~deb11u1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 24 more
#VU61104 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2022-26387
CWE-367 Medium
No
No
1:91.7.0-2~deb10u1, 1:91.7.0-2~deb11u1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61103 - Permissions, Privileges, and Access Controls
CVE-2022-26384
CWE-264 Medium
No
No
1:91.7.0-2~deb10u1, 1:91.7.0-2~deb11u1 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61033 - Use After Free
CVE-2022-26486
CWE-416 Critical
No
Exploited
1:91.6.2-1~deb10u1, 1:91.6.2-1~deb11u1 05.03.2022 SB2022030501
SB2022030720
SB2022030724
and 26 more
#VU61032 - Use After Free
CVE-2022-26485
CWE-416 Critical
Public exploit available
Exploited
1:91.6.2-1~deb10u1, 1:91.6.2-1~deb11u1 05.03.2022 SB2022030501
SB2022030720
SB2022030724
and 28 more
#VU60414 - Improper control of a resource through its lifetime
CVE-2022-22763
CWE-664 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 29 more
#VU60413 - Memory corruption
CVE-2022-22764
CWE-119 High
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more
#VU60411 - Security Features
CVE-2022-22761
CWE-254 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more
#VU60409 - Exposure of sensitive information to an unauthorized actor
CVE-2022-22760
CWE-200 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 31 more
#VU60406 - Permissions, Privileges, and Access Controls
CVE-2022-22759
CWE-264 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 31 more
#VU60398 - Insufficient UI Warning of Dangerous Operations
CVE-2022-22756
CWE-357 Medium
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more
#VU60395 - Permissions, Privileges, and Access Controls
CVE-2022-22754
CWE-264 High
No
No
1:91.6.0-1~deb10u1, 1:91.6.0-1~deb11u1 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 29 more
#VU59381 - Security Features
CVE-2022-22739
CWE-254 Low
No
No
1:91.5.0-2~deb10u1, 1:91.5.0-2~deb11u1 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59373 - Security Features
CVE-2021-4140
CWE-254 High
No
No
1:91.5.0-2~deb10u1, 1:91.5.0-2~deb11u1 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 28 more
#VU59372 - Use After Free
CVE-2022-22737
CWE-416 High
No
No
1:91.5.0-2~deb10u1, 1:91.5.0-2~deb11u1 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59371 - Heap-based Buffer Overflow
CVE-2022-22738
CWE-122 High
No
No
1:91.5.0-2~deb10u1, 1:91.5.0-2~deb11u1 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59370 - Use After Free
CVE-2022-22740
CWE-416 High
No
No
1:91.5.0-2~deb10u1, 1:91.5.0-2~deb11u1 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 28 more
#VU59369 - Improper Restriction of Rendered UI Layers or Frames
CVE-2022-22741
CWE-1021 Medium
No
No
1:91.5.0-2~deb10u1, 1:91.5.0-2~deb11u1 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 28 more
#VU59368 - Out-of-bounds write
CVE-2022-22742
CWE-787 Medium
No
No
1:91.5.0-2~deb10u1, 1:91.5.0-2~deb11u1 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more
#VU59367 - Improper Restriction of Rendered UI Layers or Frames
CVE-2022-22743
CWE-1021 Medium
No
No
1:91.5.0-2~deb10u1, 1:91.5.0-2~deb11u1 11.01.2022 SB2022011114
SB2022011115
SB2022011726
and 27 more


Showing elements 41 - 60 out of 129