Known vulnerabilities in thunderbird (Red Hat package) - page 18

Software CPE: cpe:2.3:o:red_hat:thunderbird_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 737
Public exploits: 16
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird (Red Hat package) thunderbird (Red Hat package) is affected by 737 known vulnerabilities: 7 critical, 346 high, 238 medium, 146 low Critical High Medium Low

Vulnerabilities (737)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU95500 - Multiple Interpretations of UI Input
CVE-2024-7529
CWE-450 Medium
No
No
115.14.0-1.el8_4, 115.14.0-1.el8_6 07.08.2024 SB20240806408
SB2024080774
SB2024080775
and 29 more
#VU93898 - Memory corruption
CVE-2024-6604
CWE-119 High
No
No
115.13.0-3.el8_2, 115.13.0-3.el8_4, 115.13.0-3.el8_6, 115.13.0-3.el8_8, 115.13.0-3.el8_10, 115.13.0-3.el9_0, 115.13.0-3.el9_2, 115.13.0-3.el9_4 09.07.2024 SB2024070955
SB2024070975
SB2024071077
and 39 more
#VU93897 - Memory corruption
CVE-2024-6603
CWE-119 Low
No
No
115.13.0-3.el8_2, 115.13.0-3.el8_4, 115.13.0-3.el8_6, 115.13.0-3.el8_8, 115.13.0-3.el8_10, 115.13.0-3.el9_0, 115.13.0-3.el9_2, 115.13.0-3.el9_4 09.07.2024 SB2024070955
SB2024070975
SB2024071077
and 39 more
#VU93896 - Memory corruption
CVE-2024-6602
CWE-119 High
No
No
115.13.0-3.el8_2, 115.13.0-3.el8_4, 115.13.0-3.el8_6, 115.13.0-3.el8_8, 115.13.0-3.el9_0, 115.13.0-3.el9_2 09.07.2024 SB2024070955
SB2024070975
SB2024071077
and 30 more
#VU93895 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2024-6601
CWE-362 Medium
No
No
115.13.0-3.el8_2, 115.13.0-3.el8_4, 115.13.0-3.el8_6, 115.13.0-3.el8_8, 115.13.0-3.el8_10, 115.13.0-3.el9_0, 115.13.0-3.el9_2, 115.13.0-3.el9_4 09.07.2024 SB2024070955
SB2024070975
SB2024071077
and 39 more
#VU91738 - Memory corruption
CVE-2024-5700
CWE-119 High
No
No
115.12.1-1.el7_9, 115.12.1-1.el8_2, 115.12.1-1.el8_4, 115.12.1-1.el8_6, 115.12.1-1.el8_8, 115.12.1-1.el8_10, 115.12.1-1.el9_0, 115.12.1-1.el9_2, 115.12.1-1.el9_4 11.06.2024 SB20240611267
SB20240611280
SB2024061301
and 40 more
#VU91737 - Memory corruption
CVE-2024-5696
CWE-119 High
No
No
115.12.1-1.el7_9, 115.12.1-1.el8_2, 115.12.1-1.el8_4, 115.12.1-1.el8_6, 115.12.1-1.el8_8, 115.12.1-1.el8_10, 115.12.1-1.el9_0, 115.12.1-1.el9_2, 115.12.1-1.el9_4 11.06.2024 SB20240611267
SB20240611280
SB2024061301
and 39 more
#VU91734 - Security Features
CVE-2024-5693
CWE-254 Low
No
No
115.12.1-1.el7_9, 115.12.1-1.el8_2, 115.12.1-1.el8_4, 115.12.1-1.el8_6, 115.12.1-1.el8_8, 115.12.1-1.el8_10, 115.12.1-1.el9_0, 115.12.1-1.el9_2, 115.12.1-1.el9_4 11.06.2024 SB20240611267
SB20240611280
SB2024061301
and 39 more
#VU91696 - Security Features
CVE-2024-5691
CWE-254 Medium
No
No
115.12.1-1.el7_9, 115.12.1-1.el8_2, 115.12.1-1.el8_4, 115.12.1-1.el8_6, 115.12.1-1.el8_8, 115.12.1-1.el8_10, 115.12.1-1.el9_0, 115.12.1-1.el9_2, 115.12.1-1.el9_4 11.06.2024 SB20240611267
SB20240611280
SB2024061301
and 36 more
#VU91695 - Exposure of sensitive information to an unauthorized actor
CVE-2024-5690
CWE-200 Low
No
No
115.12.1-1.el7_9, 115.12.1-1.el8_2, 115.12.1-1.el8_4, 115.12.1-1.el8_6, 115.12.1-1.el8_8, 115.12.1-1.el8_10, 115.12.1-1.el9_0, 115.12.1-1.el9_2, 115.12.1-1.el9_4 11.06.2024 SB20240611267
SB20240611280
SB2024061301
and 36 more
#VU91694 - Use After Free
CVE-2024-5688
CWE-416 High
No
No
115.12.1-1.el7_9, 115.12.1-1.el8_2, 115.12.1-1.el8_4, 115.12.1-1.el8_6, 115.12.1-1.el8_8, 115.12.1-1.el8_10, 115.12.1-1.el9_0, 115.12.1-1.el9_2, 115.12.1-1.el9_4 11.06.2024 SB20240611267
SB20240611280
SB2024061301
and 37 more
#VU91693 - Use After Free
CVE-2024-5702
CWE-416 High
No
No
115.12.1-1.el7_9, 115.12.1-1.el8_2, 115.12.1-1.el8_4, 115.12.1-1.el8_6, 115.12.1-1.el8_8, 115.12.1-1.el8_10, 115.12.1-1.el9_0, 115.12.1-1.el9_2, 115.12.1-1.el9_4 11.06.2024 SB20240611267
SB2024061301
SB2024061401
and 36 more
#VU89540 - Insufficient UI Warning of Dangerous Operations
CVE-2024-4768
CWE-357 Medium
No
No
115.11.0-1.el7_9, 115.11.0-1.el8_2, 115.11.0-1.el8_4, 115.11.0-1.el8_6, 115.11.0-1.el8_8, 115.11.0-1.el8_10, 115.11.0-1.el9_0, 115.11.0-1.el9_2, 115.11.0-1.el9_4 15.05.2024 SB2024051527
SB2024051528
SB2024051530
and 38 more
#VU89538 - Resource Management Errors
CVE-2024-4767
CWE-399 Low
No
No
115.11.0-1.el7_9, 115.11.0-1.el8_2, 115.11.0-1.el8_4, 115.11.0-1.el8_6, 115.11.0-1.el8_8, 115.11.0-1.el8_10, 115.11.0-1.el9_0, 115.11.0-1.el9_2, 115.11.0-1.el9_4 15.05.2024 SB2024051527
SB2024051528
SB2024051530
and 38 more
#VU89537 - Type confusion
CVE-2024-4367
CWE-843 High
Available
No
115.11.0-1.el7_9, 115.11.0-1.el8_2, 115.11.0-1.el8_4, 115.11.0-1.el8_6, 115.11.0-1.el8_8, 115.11.0-1.el8_10, 115.11.0-1.el9_0, 115.11.0-1.el9_2, 115.11.0-1.el9_4 15.05.2024 SB2024051527
SB2024051528
SB2024051530
and 59 more
#VU9495 - Permissions, Privileges, and Access Controls
CVE-2017-12363
CWE-264 Low
No
No
115.13.0-3.el8_8 01.12.2017 SB2017120105
SB2024072423
#VU9494 - Exposure of sensitive information to an unauthorized actor
CVE-2017-12365
CWE-200 Low
No
No
115.13.0-3.el8_8 01.12.2017 SB2017120104
SB2024072423
#VU9493 - Improper input validation
CVE-2017-12297
CWE-20 Low
No
No
115.13.0-3.el8_8 01.12.2017 SB2017120103
SB2024072423
#VU9492 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2017-12366
CWE-79 Low
No
No
115.13.0-3.el8_8 30.11.2017 SB2017120103
SB2024072423
#VU7121 - Memory corruption
CVE-2017-8487
CWE-119 High
Available
No
115.13.0-3.el9_0 15.06.2017 SB2017061408
SB20240718199


Showing elements 341 - 360 out of 737