Known vulnerabilities in thunderbird - page 23
Vendor:
OpenAnolis
Software:
thunderbird
Software CPE:
cpe:2.3:o:openanolis:thunderbird:*:*:*:*:*:anolis_os:*:*
Website:
https://openanolis.cn/
Total vulnerabilities:
662
Public exploits:
12
Known exploited (KEV):
5
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
140.13.0-1.0.1
140.12.0-1.0.1
128.14.0-3.0.1
128.13.0-3.0.1
128.12.0-1.0.1
128.11.0-1.0.1
128.10.0-1.0.1
128.9.0-2.0.1
128.5.0-1.0.1
128.4.0-1.0.1
128.3.0-1.0.1
115.5.0-1.0.1
102.3.0-3.0.2
102.5.0-2.0.1
102.3.0-3.0.1
91.3.0-2.0.1
128.8.0-2.0.1
128.7.0-1.0.1
128.6.0-3.0.1
128.3.1-1.0.1
128.2.0-1.0.1
115.14.0-1.0.1
115.13.0-3.0.1
115.12.1-1.0.1
115.10.0-2.0.1
115.9.0-1.0.1
115.8.0-1.0.1
115.7.0-1.0.1
115.6.0-1.0.1
115.4.1-1.0.1
115.3.1-1.0.1
102.15.1-1.0.1
102.15.0-1.0.1
102.14.0-3.0.1
102.14.0-1.0.1
102.13.0-2.0.1
102.12.0-1.0.1
102.11.0-1.0.1
102.10.0-2.0.1
102.9.0-1.0.1
102.8.0-2.0.1
102.7.1-2.0.1
102.7.1-1.0.1
102.6.0-2.0.1
102.4.0-1.0.1
102.3.0-4.0.1
91.13.0-1.0.1
91.12.0-1.0.1
91.11.0-2.0.1
91.10.0-1.0.1
91.9.1-1.0.1
91.9.0-3.0.1
91.8.0-1.0.2
91.8.0-1.0.1
91.7.0-2.0.1
91.6.0-1.0.1
91.5.0-1.0.1
91.4.0-2.0.1
78.13.0-1.0.1
78.12.0-2.0.1
78.11.0-1.0.1
78.10.0-1.0.1
Vulnerabilities (662)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU78857 - Memory corruption CVE-2023-4057 |
CWE-119 | High | 102.14.0-1.0.1, 102.14.0-3.0.1 | 01.08.2023 |
SB2023080172 SB2023080257 SB2023080261 and 31 more |
||
| #VU78856 - Memory corruption CVE-2023-4056 |
CWE-119 | High | 102.14.0-1.0.1, 102.14.0-3.0.1 | 01.08.2023 |
SB2023080172 SB2023080257 SB2023080261 and 38 more |
||
| #VU78855 - State Issues CVE-2023-4055 |
CWE-371 | Low | 102.14.0-1.0.1, 102.14.0-3.0.1 | 01.08.2023 |
SB2023080172 SB2023080257 SB2023080261 and 38 more |
||
| #VU78850 - Stack-based buffer overflow CVE-2023-4050 |
CWE-121 | High | 102.14.0-1.0.1, 102.14.0-3.0.1 | 01.08.2023 |
SB2023080172 SB2023080257 SB2023080261 and 37 more |
||
| #VU78849 - Use After Free CVE-2023-4049 |
CWE-416 | High | 102.14.0-1.0.1, 102.14.0-3.0.1 | 01.08.2023 |
SB2023080172 SB2023080257 SB2023080261 and 39 more |
||
| #VU78848 - Resource exhaustion CVE-2023-4048 |
CWE-400 | Medium | 102.14.0-1.0.1, 102.14.0-3.0.1 | 01.08.2023 |
SB2023080172 SB2023080257 SB2023080261 and 37 more |
||
| #VU78847 - Insufficient UI Warning of Dangerous Operations CVE-2023-4047 |
CWE-357 | Medium | 102.14.0-1.0.1, 102.14.0-3.0.1 | 01.08.2023 |
SB2023080172 SB2023080257 SB2023080261 and 37 more |
||
| #VU78846 - State Issues CVE-2023-4046 |
CWE-371 | High | 102.14.0-1.0.1, 102.14.0-3.0.1 | 01.08.2023 |
SB2023080172 SB2023080257 SB2023080261 and 39 more |
||
| #VU78845 - Origin Validation Error CVE-2023-4045 |
CWE-346 | Medium | 102.14.0-1.0.1, 102.14.0-3.0.1 | 01.08.2023 |
SB2023080172 SB2023080257 SB2023080261 and 37 more |
||
| #VU78541 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing) CVE-2023-3417 |
CWE-451 | Low | 102.14.0-1.0.1, 102.14.0-3.0.1 | 21.07.2023 |
SB2023072136 SB2023073101 SB2023073148 and 13 more |
||
| #VU77944 - Memory corruption CVE-2023-37211 |
CWE-119 | High | 102.13.0-2.0.1 | 04.07.2023 |
SB2023070433 SB2023070434 SB2023070448 and 36 more |
||
| #VU77943 - Insufficient UI Warning of Dangerous Operations CVE-2023-37208 |
CWE-357 | Medium | 102.13.0-2.0.1 | 04.07.2023 |
SB2023070433 SB2023070434 SB2023070448 and 35 more |
||
| #VU77942 - Insufficient UI Warning of Dangerous Operations CVE-2023-37207 |
CWE-357 | Medium | 102.13.0-2.0.1 | 04.07.2023 |
SB2023070433 SB2023070434 SB2023070448 and 35 more |
||
| #VU77941 - Use After Free CVE-2023-37202 |
CWE-416 | High | 102.13.0-2.0.1 | 04.07.2023 |
SB2023070433 SB2023070434 SB2023070448 and 36 more |
||
| #VU77940 - Use After Free CVE-2023-37201 |
CWE-416 | High | 102.13.0-2.0.1 | 04.07.2023 |
SB2023070433 SB2023070434 SB2023070448 and 35 more |
||
| #VU77004 - Memory corruption CVE-2023-34416 |
CWE-119 | High | 102.12.0-1.0.1 | 06.06.2023 |
SB2023060653 SB2023060676 SB2023060710 and 39 more |
||
| #VU77002 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing) CVE-2023-34414 |
CWE-451 | Medium | 102.12.0-1.0.1 | 06.06.2023 |
SB2023060653 SB2023060676 SB2023060710 and 38 more |
||
| #VU75876 - Security Features CVE-2023-32207 |
CWE-254 | Medium | 102.11.0-1.0.1 | 09.05.2023 |
SB2023050974 SB20230509129 SB2023051067 and 38 more |
||
| #VU75875 - Out-of-bounds read CVE-2023-32206 |
CWE-125 | Low | 102.11.0-1.0.1 | 09.05.2023 |
SB2023050974 SB20230509129 SB2023051067 and 38 more |
||
| #VU75874 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing) CVE-2023-32205 |
CWE-451 | Medium | 102.11.0-1.0.1 | 09.05.2023 |
SB2023050974 SB20230509129 SB2023051067 and 37 more |
Showing elements 441 - 460 out of 662