Known vulnerabilities in thunderbird (Red Hat package) - page 17

Software CPE: cpe:2.3:o:red_hat:thunderbird_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 766
Public exploits: 17
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird (Red Hat package) thunderbird (Red Hat package) is affected by 766 known vulnerabilities: 7 critical, 358 high, 252 medium, 149 low Critical High Medium Low

Vulnerabilities (766)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU103606 - Use After Free
CVE-2025-1012
CWE-416 High
No
No
128.7.0-1.el8_2, 128.7.0-1.el8_6, 128.7.0-1.el8_8, 128.7.0-1.el8_10, 128.7.0-1.el9_0, 128.7.0-1.el9_2, 128.7.0-1.el9_4, 128.7.0-1.el9_5 04.02.2025 SB2025020463
SB2025020464
SB2025020465
and 34 more
#VU102428 - Memory corruption
CVE-2025-0243
CWE-119 High
No
No
128.6.0-3.el8_2, 128.6.0-3.el8_4, 128.6.0-3.el8_6, 128.6.0-3.el8_8, 128.6.0-3.el8_10, 128.6.0-3.el9_0, 128.6.0-3.el9_2, 128.6.0-3.el9_4, 128.6.0-3.el9_5 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 42 more
#VU102423 - Memory corruption
CVE-2025-0242
CWE-119 High
No
No
128.6.0-3.el8_2, 128.6.0-3.el8_4, 128.6.0-3.el8_6, 128.6.0-3.el8_8, 128.6.0-3.el8_10, 128.6.0-3.el9_0, 128.6.0-3.el9_2, 128.6.0-3.el9_4, 128.6.0-3.el9_5 07.01.2025 SB2025010749
SB2025010801
SB2025010802
and 47 more
#VU100959 - Memory corruption
CVE-2024-11699
CWE-119 High
No
No
128.5.0-1.el8_2, 128.5.0-1.el8_4, 128.5.0-1.el8_6, 128.5.0-1.el8_8, 128.5.0-1.el8_10, 128.5.0-1.el9_0, 128.5.0-1.el9_2, 128.5.0-1.el9_4, 128.5.0-1.el9_5 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 40 more
#VU100957 - Data Handling
CVE-2024-11697
CWE-19 Low
No
No
128.5.0-1.el8_2, 128.5.0-1.el8_4, 128.5.0-1.el8_6, 128.5.0-1.el8_8, 128.5.0-1.el8_10, 128.5.0-1.el9_0, 128.5.0-1.el9_2, 128.5.0-1.el9_4, 128.5.0-1.el9_5 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 43 more
#VU100956 - Error Handling
CVE-2024-11696
CWE-388 Medium
No
No
128.5.0-1.el8_2, 128.5.0-1.el8_4, 128.5.0-1.el8_6, 128.5.0-1.el8_8, 128.5.0-1.el8_10, 128.5.0-1.el9_0, 128.5.0-1.el9_2, 128.5.0-1.el9_4, 128.5.0-1.el9_5 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 40 more
#VU100955 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-11695
CWE-451 Medium
No
No
128.5.0-1.el8_2, 128.5.0-1.el8_4, 128.5.0-1.el8_6, 128.5.0-1.el8_8, 128.5.0-1.el8_10, 128.5.0-1.el9_0, 128.5.0-1.el9_2, 128.5.0-1.el9_4, 128.5.0-1.el9_5 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 40 more
#VU100953 - Insufficient UI Warning of Dangerous Operations
CVE-2024-11692
CWE-357 Low
No
No
128.5.0-1.el8_2, 128.5.0-1.el8_4, 128.5.0-1.el8_6, 128.5.0-1.el8_8, 128.5.0-1.el8_10, 128.5.0-1.el9_0, 128.5.0-1.el9_2, 128.5.0-1.el9_4, 128.5.0-1.el9_5 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 43 more
#VU100952 - Security Features
CVE-2024-11694
CWE-254 Medium
No
No
128.5.0-1.el8_2, 128.5.0-1.el8_4, 128.5.0-1.el8_6, 128.5.0-1.el8_8, 128.5.0-1.el8_10, 128.5.0-1.el9_0, 128.5.0-1.el9_2, 128.5.0-1.el9_4, 128.5.0-1.el9_5 26.11.2024 SB2024112669
SB2024112670
SB2024112671
and 41 more
#VU100447 - Exposure of sensitive information to an unauthorized actor
CVE-2024-11159
CWE-200 Low
No
No
128.5.0-1.el8_2, 128.5.0-1.el8_4, 128.5.0-1.el8_6, 128.5.0-1.el8_8, 128.5.0-1.el8_10, 128.5.0-1.el9_0, 128.5.0-1.el9_2, 128.5.0-1.el9_4, 128.5.0-1.el9_5 13.11.2024 SB2024111333
SB2024111603
SB2024112544
and 12 more
#VU99490 - Memory corruption
CVE-2024-10467
CWE-119 High
No
No
128.4.0-1.el8_2, 128.4.0-1.el8_4, 128.4.0-1.el8_6, 128.4.0-1.el8_8, 128.4.0-1.el8_10, 128.4.0-1.el9_0, 128.4.0-1.el9_2, 128.4.0-1.el9_4, 128.4.0-1.el9_5 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99489 - Resource Management Errors
CVE-2024-10466
CWE-399 Low
No
No
128.4.0-1.el8_2, 128.4.0-1.el8_4, 128.4.0-1.el8_6, 128.4.0-1.el8_8, 128.4.0-1.el8_10, 128.4.0-1.el9_0, 128.4.0-1.el9_2, 128.4.0-1.el9_4, 128.4.0-1.el9_5 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99488 - Insufficient UI Warning of Dangerous Operations
CVE-2024-10465
CWE-357 Low
No
No
128.4.0-1.el8_2, 128.4.0-1.el8_4, 128.4.0-1.el8_6, 128.4.0-1.el8_8, 128.4.0-1.el8_10, 128.4.0-1.el9_0, 128.4.0-1.el9_2, 128.4.0-1.el9_4, 128.4.0-1.el9_5 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99487 - Resource Management Errors
CVE-2024-10464
CWE-399 Low
No
No
128.4.0-1.el8_2, 128.4.0-1.el8_4, 128.4.0-1.el8_6, 128.4.0-1.el8_8, 128.4.0-1.el8_10, 128.4.0-1.el9_0, 128.4.0-1.el9_2, 128.4.0-1.el9_4, 128.4.0-1.el9_5 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99486 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2024-10462
CWE-451 Medium
No
No
128.4.0-1.el8_2, 128.4.0-1.el8_4, 128.4.0-1.el8_6, 128.4.0-1.el8_8, 128.4.0-1.el8_10, 128.4.0-1.el9_0, 128.4.0-1.el9_2, 128.4.0-1.el9_4, 128.4.0-1.el9_5 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99485 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2024-10461
CWE-79 Medium
No
No
128.4.0-1.el8_2, 128.4.0-1.el8_4, 128.4.0-1.el8_6, 128.4.0-1.el8_8, 128.4.0-1.el8_10, 128.4.0-1.el9_0, 128.4.0-1.el9_2, 128.4.0-1.el9_4, 128.4.0-1.el9_5 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99482 - Exposure of sensitive information to an unauthorized actor
CVE-2024-10463
CWE-200 Low
No
No
128.4.0-1.el8_2, 128.4.0-1.el8_4, 128.4.0-1.el8_6, 128.4.0-1.el8_8, 128.4.0-1.el8_10, 128.4.0-1.el9_0, 128.4.0-1.el9_2, 128.4.0-1.el9_4, 128.4.0-1.el9_5 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99481 - Use After Free
CVE-2024-10459
CWE-416 High
No
No
128.4.0-1.el8_2, 128.4.0-1.el8_4, 128.4.0-1.el8_6, 128.4.0-1.el8_8, 128.4.0-1.el8_10, 128.4.0-1.el9_0, 128.4.0-1.el9_2, 128.4.0-1.el9_4, 128.4.0-1.el9_5 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU99480 - Permissions, Privileges, and Access Controls
CVE-2024-10458
CWE-264 Medium
No
No
128.4.0-1.el8_2, 128.4.0-1.el8_4, 128.4.0-1.el8_6, 128.4.0-1.el8_8, 128.4.0-1.el8_10, 128.4.0-1.el9_0, 128.4.0-1.el9_2, 128.4.0-1.el9_4, 128.4.0-1.el9_5 29.10.2024 SB2024102965
SB2024102966
SB2024102967
and 42 more
#VU98333 - Use After Free
CVE-2024-9680
CWE-416 Critical
Available
Exploited
128.3.1-1.el8_2, 128.3.1-1.el8_4, 128.3.1-1.el8_6, 128.3.1-1.el8_8, 128.3.1-1.el8_10, 128.3.1-1.el9_0, 128.3.1-1.el9_2, 128.3.1-1.el9_4, 128.4.0-1.el9_5 09.10.2024 SB2024100998
SB2024101002
SB2024101049
and 44 more


Showing elements 321 - 340 out of 766