Known vulnerabilities in thunderbird (Debian package) 60.9.0-1~deb10u1 - page 6

Vendor: Debian
Version: 60.9.0-1~deb10u1
Software CPE: cpe:2.3:o:debian:thunderbird_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 123
Public exploits: 7
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.2

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting thunderbird (Debian package) version 60.9.0-1~deb10u1 thunderbird (Debian package) 60.9.0-1~deb10u1 is affected by 123 vulnerabilities: 2 critical, 51 high, 49 medium, 21 low Critical High Medium Low

Vulnerabilities (123)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48755 - Stack-based buffer overflow
CVE-2020-26970
CWE-121 High
No
No
1:78.5.1-1~deb10u1 02.12.2020 SB2020120213
SB2020120607
SB2020120704
and 9 more
#VU48472 - Memory corruption
CVE-2020-26968
CWE-119 High
No
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48469 - Exposure of sensitive information to an unauthorized actor
CVE-2020-26965
CWE-200 Low
No
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48466 - Improperly Implemented Security Check for Standard
CVE-2020-26961
CWE-358 Medium
No
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48465 - Use After Free
CVE-2020-26960
CWE-416 High
No
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48464 - Use After Free
CVE-2020-26959
CWE-416 Medium
No
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48463 - Permissions, Privileges, and Access Controls
CVE-2020-26958
CWE-264 Medium
No
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48462 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-26956
CWE-79 Medium
No
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48461 -
CVE-2020-26953
Medium
No
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48460 - Origin Validation Error
CVE-2020-16012
CWE-346 Medium
Public exploit available
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 34 more
#VU48458 - Improper input validation
CVE-2020-26951
CWE-20 Medium
No
No
1:78.5.0-1~deb10u1 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 25 more
#VU48235 - Use After Free
CVE-2020-26950
CWE-416 High
Public exploit available
No
78.4.2-1~deb10u1 09.11.2020 SB2020110949
SB2020110950
SB2020111001
and 25 more
#VU46966 - Memory corruption
CVE-2020-15673
CWE-119 High
No
No
1:78.3.1-2~deb10u2 23.09.2020 SB2020092302
SB2020092304
SB2020092308
and 21 more
#VU46965 - Use After Free
CVE-2020-15678
CWE-416 Medium
No
No
1:78.3.1-2~deb10u2 23.09.2020 SB2020092302
SB2020092304
SB2020092314
and 21 more
#VU46964 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-15676
CWE-79 Medium
No
No
1:78.3.1-2~deb10u2 23.09.2020 SB2020092302
SB2020092304
SB2020092310
and 21 more
#VU46963 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-15677
CWE-451 Low
No
No
1:78.3.1-2~deb10u2 23.09.2020 SB2020092302
SB2020092304
SB2020092312
and 21 more
#VU46018 - Use After Free
CVE-2020-15669
CWE-416 High
No
No
1:68.12.0-1~deb10u1 25.08.2020 SB2020082514
SB2020082520
SB2020082618
and 20 more
#VU46016 - Resource Management Errors
CVE-2020-15664
CWE-399 Medium
No
No
1:68.12.0-1~deb10u1 25.08.2020 SB2020082514
SB2020082520
SB2020082618
and 27 more
#VU29453 - Out-of-bounds read
CVE-2020-12418
CWE-125 Medium
No
No
1:68.10.0-1~deb9u1, 1:68.10.0-1~deb10u1 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 24 more
#VU29452 - Improper input validation
CVE-2020-12417
CWE-20 Medium
No
No
1:68.10.0-1~deb9u1, 1:68.10.0-1~deb10u1 02.07.2020 SB2020070208
SB2020070222
SB2020070301
and 22 more


Showing elements 101 - 120 out of 123