Known vulnerabilities in thunderbird (Red Hat package) 60.6.1-1.el6_10

Version: 60.6.1-1.el6_10
Software CPE: cpe:2.3:o:red_hat:thunderbird_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 25
Public exploits: 1
Known exploited (KEV): 2
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting thunderbird (Red Hat package) version 60.6.1-1.el6_10 thunderbird (Red Hat package) 60.6.1-1.el6_10 is affected by 25 vulnerabilities: 2 critical, 10 high, 11 medium, 2 low Critical High Medium Low

Vulnerabilities (25)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU48472 - Memory corruption
CVE-2020-26968
CWE-119 High
No
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48469 - Exposure of sensitive information to an unauthorized actor
CVE-2020-26965
CWE-200 Low
No
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48466 - Improperly Implemented Security Check for Standard
CVE-2020-26961
CWE-358 Medium
No
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48465 - Use After Free
CVE-2020-26960
CWE-416 High
No
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48464 - Use After Free
CVE-2020-26959
CWE-416 Medium
No
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48463 - Permissions, Privileges, and Access Controls
CVE-2020-26958
CWE-264 Medium
No
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48462 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-26956
CWE-79 Medium
No
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48461 -
CVE-2020-26953
Medium
No
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48460 - Origin Validation Error
CVE-2020-16012
CWE-346 Medium
Public exploit available
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 34 more
#VU48458 - Improper input validation
CVE-2020-26951
CWE-20 Medium
No
No
78.5.0-1.el6_10, 78.5.0-1.el7_9, 78.5.0-1.el8_0, 78.5.0-1.el8_1, 78.5.0-1.el8_2, 78.5.0-1.el8_3 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 25 more
#VU47746 - Memory corruption
CVE-2020-15683
CWE-119 High
No
No
78.4.0-1.el6_10, 78.4.0-1.el7_9, 78.4.0-1.el8_0, 78.4.0-1.el8_1, 78.4.0-1.el8_2, 78.4.0-1.el8_3 20.10.2020 SB2020102042
SB2020102207
SB2020102311
and 26 more
#VU47360 - Use After Free
CVE-2020-15969
CWE-416 High
No
No
78.4.0-1.el6_10, 78.4.0-1.el7_9, 78.4.0-1.el8_0, 78.4.0-1.el8_1, 78.4.0-1.el8_2, 78.4.0-1.el8_3 07.10.2020 SB2020100713
SB2020101003
SB2020101319
and 55 more
#VU46966 - Memory corruption
CVE-2020-15673
CWE-119 High
No
No
78.3.1-1.el6_10, 78.3.1-1.el7_9, 78.3.1-1.el8_0, 78.3.1-1.el8_1, 78.3.1-1.el8_2 23.09.2020 SB2020092302
SB2020092304
SB2020092308
and 21 more
#VU46965 - Use After Free
CVE-2020-15678
CWE-416 Medium
No
No
78.3.1-1.el6_10, 78.3.1-1.el7_9, 78.3.1-1.el8_0, 78.3.1-1.el8_1, 78.3.1-1.el8_2 23.09.2020 SB2020092302
SB2020092304
SB2020092314
and 21 more
#VU46964 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-15676
CWE-79 Medium
No
No
78.3.1-1.el6_10, 78.3.1-1.el7_9, 78.3.1-1.el8_0, 78.3.1-1.el8_1, 78.3.1-1.el8_2 23.09.2020 SB2020092302
SB2020092304
SB2020092310
and 21 more
#VU46963 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-15677
CWE-451 Low
No
No
78.3.1-1.el6_10, 78.3.1-1.el7_9, 78.3.1-1.el8_0, 78.3.1-1.el8_1, 78.3.1-1.el8_2 23.09.2020 SB2020092302
SB2020092304
SB2020092312
and 21 more
#VU28569 - Cleartext Transmission of Sensitive Information
CVE-2020-12398
CWE-319 Medium
No
No
68.9.0-1.el6_10, 68.9.0-1.el7_8, 68.9.0-1.el8_0, 68.9.0-1.el8_1, 68.9.0-1.el8_2 04.06.2020 SB2020060409
SB2020060422
SB2020060604
and 11 more
#VU28527 - Memory corruption
CVE-2020-12410
CWE-119 High
No
No
68.9.0-1.el6_10, 68.9.0-1.el7_8, 68.9.0-1.el8_0, 68.9.0-1.el8_1, 68.9.0-1.el8_2 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 24 more
#VU28524 - Type confusion
CVE-2020-12406
CWE-843 High
No
No
68.9.0-1.el6_10, 68.9.0-1.el7_8, 68.9.0-1.el8_0, 68.9.0-1.el8_1, 68.9.0-1.el8_2 02.06.2020 SB2020060216
SB2020060215
SB2020060301
and 25 more
#VU28523 - Use After Free
CVE-2020-12405
CWE-416 High
No
No
68.9.0-1.el6_10, 68.9.0-1.el7_8, 68.9.0-1.el8_0, 68.9.0-1.el8_1, 68.9.0-1.el8_2 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 25 more


Showing elements 1 - 20 out of 25