Skip to main content

Vendor/product archive

mozilla / thunderbird CVEs

Beta · best-effort

1,828 CVEs tagged to mozilla / thunderbird639 Critical, 547 High, 616 Medium, 26 Low, 0 Unrated.

CVE-2023-1945

Published Jun 2, 2023

Unexpected data returned from the Safe Browsing API could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 102.10 and Fi…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-0767

Published Jun 2, 2023

An attacker could construct a PKCS 12 cert bundle in such a way that could allow for arbitrary memory writes via PKCS 12 Safe Bag attributes being mishandled. This vulnerability a…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2023-0616

Published Jun 2, 2023

If a MIME email combines OpenPGP and OpenPGP MIME data in a certain way Thunderbird repeatedly attempts to process and display the message, which could cause Thunderbird's user in…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-0547

Published Jun 2, 2023

OCSP revocation status of recipient certificates was not checked when sending S/Mime encrypted email, and revoked certificates would be accepted. Thunderbird versions from 68 to 1…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-0430

Published Jun 2, 2023

Certificate OCSP revocation status was not checked when verifying S/Mime signatures. Mail signed with a revoked certificate would be displayed as having a valid signature. Thunder…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-43529

Published Feb 16, 2023

Thunderbird versions prior to 91.3.0 are vulnerable to the heap overflow described in CVE-2021-43527 when processing S/MIME messages. Thunderbird versions 91.3.0 and later will no…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2022-45414

Published Dec 22, 2022

If a Thunderbird user quoted from an HTML email, for example by replying to the email, and the email contained either a VIDEO tag with the POSTER attribute or an OBJECT tag with a…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort
Showing 601-625 of 1,828 CVEsPage 25 of 74