Known vulnerabilities in thunderbird (Red Hat package) - page 31

Software CPE: cpe:2.3:o:red_hat:thunderbird_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 766
Public exploits: 17
Known exploited (KEV): 7
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting thunderbird (Red Hat package) thunderbird (Red Hat package) is affected by 766 known vulnerabilities: 7 critical, 358 high, 252 medium, 149 low Critical High Medium Low

Vulnerabilities (766)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU61943 - Security Features
CVE-2022-1197
CWE-254 Medium
No
No
91.8.0-1.el7_9, 91.8.0-1.el8_1, 91.8.0-1.el8_2, 91.8.0-1.el8_4, 91.8.0-1.el8_5 06.04.2022 SB2022040628
SB2022040629
SB2022041121
and 10 more
#VU61895 - Resource exhaustion
CVE-2022-24713
CWE-400 Medium
No
No
91.8.0-1.el7_9, 91.8.0-1.el8_1, 91.8.0-1.el8_2, 91.8.0-1.el8_4, 91.8.0-1.el8_5 05.04.2022 SB2022040527
SB2022040526
SB2022040529
and 34 more
#VU61894 - Use After Free
CVE-2022-1196
CWE-416 High
No
No
91.8.0-1.el7_9, 91.8.0-1.el8_1, 91.8.0-1.el8_2, 91.8.0-1.el8_4, 91.8.0-1.el8_5 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 23 more
#VU61890 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2022-28286
CWE-451 Medium
No
No
91.8.0-1.el7_9, 91.8.0-1.el8_1, 91.8.0-1.el8_2, 91.8.0-1.el8_4, 91.8.0-1.el8_5 05.04.2022 SB2022040526
SB2022040628
SB2022040629
and 23 more
#VU61886 - Use After Free
CVE-2022-28282
CWE-416 High
Available
No
91.8.0-1.el7_9, 91.8.0-1.el8_1, 91.8.0-1.el8_2, 91.8.0-1.el8_4, 91.8.0-1.el8_5 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61885 - Out-of-bounds write
CVE-2022-28281
CWE-787 High
Available
No
91.8.0-1.el7_9, 91.8.0-1.el8_1, 91.8.0-1.el8_2, 91.8.0-1.el8_4, 91.8.0-1.el8_5 05.04.2022 SB2022040526
SB2022040529
SB2022040628
and 24 more
#VU61109 - Improper Access Control
CVE-2022-26386
CWE-284 Low
No
No
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 24 more
#VU61105 - Use After Free
CVE-2022-26381
CWE-416 High
No
No
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61104 - Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2022-26387
CWE-367 Medium
No
No
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61103 - Permissions, Privileges, and Access Controls
CVE-2022-26384
CWE-264 Medium
No
No
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61102 - Insufficient UI Warning of Dangerous Operations
CVE-2022-26383
CWE-357 Low
No
No
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 08.03.2022 SB2022030807
SB2022030914
SB2022031015
and 27 more
#VU61033 - Use After Free
CVE-2022-26486
CWE-416 Critical
No
Exploited
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 05.03.2022 SB2022030501
SB2022030720
SB2022030724
and 26 more
#VU61032 - Use After Free
CVE-2022-26485
CWE-416 Critical
Available
Exploited
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 05.03.2022 SB2022030501
SB2022030720
SB2022030724
and 28 more
#VU60739 - Integer overflow
CVE-2022-25315
CWE-190 High
No
No
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 99 more
#VU60736 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-25235
CWE-94 High
No
No
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 106 more
#VU60733 - Improper input validation
CVE-2022-25236
CWE-20 Medium
No
No
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 21.02.2022 SB2022022109
SB2022022113
SB2022022411
and 109 more
#VU60628 - Out-of-bounds write
CVE-2022-0566
CWE-787 High
No
No
91.7.0-2.el7_9, 91.7.0-2.el8_1, 91.7.0-2.el8_2, 91.7.0-2.el8_4, 91.7.0-2.el8_5 15.02.2022 SB2022021517
SB2022021814
SB2022022503
and 12 more
#VU60414 - Improper control of a resource through its lifetime
CVE-2022-22763
CWE-664 Medium
No
No
91.6.0-1.el7_9, 91.6.0-1.el8_1, 91.6.0-1.el8_2, 91.6.0-1.el8_4, 91.6.0-1.el8_5 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 29 more
#VU60413 - Memory corruption
CVE-2022-22764
CWE-119 High
No
No
91.6.0-1.el7_9, 91.6.0-1.el8_1, 91.6.0-1.el8_2, 91.6.0-1.el8_4, 91.6.0-1.el8_5 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more
#VU60398 - Insufficient UI Warning of Dangerous Operations
CVE-2022-22756
CWE-357 Medium
No
No
91.6.0-1.el7_9, 91.6.0-1.el8_1, 91.6.0-1.el8_2, 91.6.0-1.el8_4, 91.6.0-1.el8_5 08.02.2022 SB2022020837
SB2022021015
SB2022021017
and 30 more


Showing elements 601 - 620 out of 766