Known vulnerabilities in thunderbird (Red Hat package) - page 16

Software CPE: cpe:2.3:o:red_hat:thunderbird_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 766
Public exploits: 17
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird (Red Hat package) thunderbird (Red Hat package) is affected by 766 known vulnerabilities: 7 critical, 358 high, 252 medium, 149 low Critical High Medium Low

Vulnerabilities (766)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU108050 - Memory corruption
CVE-2025-4093
CWE-119 High
No
No
128.10.0-1.el8_10, 128.10.0-1.el9_5 29.04.2025 SB2025042927
SB2025042929
SB2025043001
and 26 more
#VU108049 - Memory corruption
CVE-2025-4091
CWE-119 High
No
No
128.10.0-1.el8_10, 128.10.0-1.el9_5 29.04.2025 SB2025042927
SB2025042928
SB2025042929
and 27 more
#VU108046 - Protection Mechanism Failure
CVE-2025-4083
CWE-693 High
No
No
128.10.0-1.el8_10, 128.10.0-1.el9_5 29.04.2025 SB2025042927
SB2025042928
SB2025042929
and 27 more
#VU107465 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-3523
CWE-451 Low
No
No
128.9.2-1.el8_2, 128.9.2-1.el8_4, 128.9.2-1.el8_6, 128.9.2-1.el8_8, 128.9.2-1.el8_10, 128.9.2-1.el9_0, 128.9.2-1.el9_2, 128.9.2-1.el9_4, 128.9.2-1.el9_5 15.04.2025 SB2025041536
SB2025041555
SB2025042487
and 13 more
#VU107464 - Exposure of sensitive information to an unauthorized actor
CVE-2025-2830
CWE-200 Low
No
No
128.9.2-1.el8_2, 128.9.2-1.el8_4, 128.9.2-1.el8_6, 128.9.2-1.el8_8, 128.9.2-1.el8_10, 128.9.2-1.el9_0, 128.9.2-1.el9_2, 128.9.2-1.el9_4, 128.9.2-1.el9_5 15.04.2025 SB2025041536
SB2025041555
SB2025042487
and 13 more
#VU107463 - Exposure of sensitive information to an unauthorized actor
CVE-2025-3522
CWE-200 Medium
No
No
128.9.2-1.el8_2, 128.9.2-1.el8_4, 128.9.2-1.el8_6, 128.9.2-1.el8_8, 128.9.2-1.el8_10, 128.9.2-1.el9_0, 128.9.2-1.el9_2, 128.9.2-1.el9_4, 128.9.2-1.el9_5 15.04.2025 SB2025041536
SB2025041555
SB2025042487
and 13 more
#VU106360 - Memory corruption
CVE-2025-3030
CWE-119 High
No
No
128.9.0-2.el8_2, 128.9.0-2.el8_4, 128.9.0-2.el8_6, 128.9.0-2.el8_8, 128.9.0-2.el8_10, 128.9.0-2.el9_2, 128.9.0-2.el9_4, 128.9.0-2.el9_5 01.04.2025 SB2025040129
SB2025040130
SB2025040131
and 40 more
#VU106359 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-3029
CWE-451 Medium
No
No
128.9.0-2.el8_2, 128.9.0-2.el8_4, 128.9.0-2.el8_6, 128.9.0-2.el8_8, 128.9.0-2.el8_10, 128.9.0-2.el9_2, 128.9.0-2.el9_4, 128.9.0-2.el9_5 01.04.2025 SB2025040129
SB2025040130
SB2025040131
and 40 more
#VU106358 - Use After Free
CVE-2025-3028
CWE-416 High
No
No
128.9.0-2.el8_2, 128.9.0-2.el8_4, 128.9.0-2.el8_6, 128.9.0-2.el8_8, 128.9.0-2.el8_10, 128.9.0-2.el9_2, 128.9.0-2.el9_4, 128.9.0-2.el9_5 01.04.2025 SB2025040129
SB2025040130
SB2025040131
and 40 more
#VU105319 - Memory corruption
CVE-2025-1938
CWE-119 High
No
No
128.8.0-2.el8_10, 128.8.0-2.el9_5 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 35 more
#VU105304 - Memory corruption
CVE-2025-1937
CWE-119 High
No
No
128.8.0-2.el8_10, 128.8.0-2.el9_5 05.03.2025 SB2025030502
SB2025030503
SB2025030504
and 36 more
#VU103616 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2025-0510
CWE-451 Medium
No
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020464
SB2025020465
SB2025020901
and 13 more
#VU103615 - Improper input validation
CVE-2025-1015
CWE-20 Low
Available
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020464
SB2025020603
SB2025020901
and 13 more
#VU103611 - Memory corruption
CVE-2025-1017
CWE-119 High
No
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103610 - Improper Certificate Validation
CVE-2025-1014
CWE-295 Low
No
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103609 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2025-1013
CWE-362 Low
No
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103608 - Improper Control of Generation of Code ('Code Injection')
CVE-2025-1011
CWE-94 High
No
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103607 - Memory corruption
CVE-2025-1016
CWE-119 High
No
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103605 - Use After Free
CVE-2025-1010
CWE-416 High
No
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU103604 - Use After Free
CVE-2025-1009
CWE-416 High
No
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more


Showing elements 301 - 320 out of 766