CVE-2018-5117
- EPSS 2.15%
- Veröffentlicht 11.06.2018 21:29:13
- Zuletzt bearbeitet 25.11.2025 17:50:16
If right-to-left text is used in the addressbar with left-to-right alignment, it is possible in some circumstances to scroll this text to spoof the displayed URL. This issue could result in the wrong URL being displayed as a location, which can misle...
CVE-2017-7848
- EPSS 1.89%
- Veröffentlicht 11.06.2018 21:29:12
- Zuletzt bearbeitet 21.11.2024 03:32:47
RSS fields can inject new lines into the created email structure, modifying the message body. This vulnerability affects Thunderbird < 52.5.2.
CVE-2018-5091
- EPSS 2.6%
- Veröffentlicht 11.06.2018 21:29:12
- Zuletzt bearbeitet 25.11.2025 17:50:16
A use-after-free vulnerability can occur during WebRTC connections when interacting with the DTMF timers. This results in a potentially exploitable crash. This vulnerability affects Firefox ESR < 52.6 and Firefox < 58.
CVE-2018-5095
- EPSS 2.94%
- Veröffentlicht 11.06.2018 21:29:12
- Zuletzt bearbeitet 25.11.2025 17:50:16
An integer overflow vulnerability in the Skia library when allocating memory for edge builders on some systems with at least 8 GB of RAM. This results in the use of uninitialized memory, resulting in a potentially exploitable crash. This vulnerabilit...
CVE-2018-5096
- EPSS 1.56%
- Veröffentlicht 11.06.2018 21:29:12
- Zuletzt bearbeitet 25.11.2025 17:50:16
A use-after-free vulnerability can occur while editing events in form elements on a page, resulting in a potentially exploitable crash. This vulnerability affects Firefox ESR < 52.6 and Thunderbird < 52.6.
CVE-2017-7807
- EPSS 0.78%
- Veröffentlicht 11.06.2018 21:29:10
- Zuletzt bearbeitet 25.11.2025 17:50:16
A mechanism that uses AppCache to hijack a URL in a domain using fallback by serving the files from a sub-path on the domain. This has been addressed by requiring fallback files be inside the manifest directory. This vulnerability affects Thunderbird...
CVE-2017-7809
- EPSS 2.29%
- Veröffentlicht 11.06.2018 21:29:10
- Zuletzt bearbeitet 25.11.2025 17:50:16
A use-after-free vulnerability can occur when an editor DOM node is deleted prematurely during tree traversal while still bound to the document. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox E...
CVE-2017-7784
- EPSS 5.22%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 21.11.2024 03:32:39
A use-after-free vulnerability can occur when reading an image observer during frame reconstruction after the observer has been freed. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3,...
CVE-2017-7785
- EPSS 8.43%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 25.11.2025 17:50:16
A buffer overflow can occur when manipulating Accessible Rich Internet Applications (ARIA) attributes within the DOM. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55...
CVE-2017-7786
- EPSS 8.52%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 21.11.2024 03:32:39
A buffer overflow can occur when the image renderer attempts to paint non-displayable SVG elements. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.