Skip to main content

Vendor/product archive

mozilla / thunderbird CVEs

Beta · best-effort

1,775 CVEs tagged to mozilla / thunderbird607 Critical, 527 High, 615 Medium, 26 Low, 0 Unrated.

CVE-2023-5217

Published Sep 28, 2023

Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a cr…

CVSS 8.8 · High
evidence mentions
21
Buzz score
69.5
KEV listed

CVE-2023-4863

Published Sep 12, 2023

Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML pa…

CVSS 8.8 · High
evidence mentions
30
Buzz score
72.5
KEV listed

CVE-2023-4577

Published Sep 11, 2023

When `UpdateRegExpStatics` attempted to access `initialStringHeap` it could already have been garbage collected prior to entering the function, which could potentially have led to…

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9

CVE-2023-3417

Published Jul 24, 2023

Thunderbird allowed the Text Direction Override Unicode Character in filenames. An email attachment could be incorrectly shown as being a document file, while in fact it was an e…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 476-500 of 1,775 CVEsPage 20 of 71