Mozilla

Thunderbird

1713 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Veröffentlicht 21.10.2010 19:00:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

A certain application-launch script in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 on Linux places a zero-length directory name in the LD_LIBRARY_PATH, which allow...

  • EPSS 6.98%
  • Veröffentlicht 21.10.2010 19:00:03
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The LookupGetterOrSetter function in js3250.dll in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 does not properly support window.__lookupGetter__ function calls tha...

  • EPSS 1.16%
  • Veröffentlicht 21.10.2010 19:00:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 recognize a wildcard IP address in the subject's Common Name field of an X.509 certificate, which might allow man-in-th...

  • EPSS 2.32%
  • Veröffentlicht 21.10.2010 19:00:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The SSL implementation in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 does not properly set the minimum key length for Diffie-Hellman Ephemeral (DHE) mode, which m...

  • EPSS 3.2%
  • Veröffentlicht 21.10.2010 19:00:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.14, Thunderbird before 3.0.9, and SeaMonkey before 2.0.9 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly ex...

  • EPSS 3.23%
  • Veröffentlicht 21.10.2010 19:00:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.6.x before 3.6.11 and Thunderbird 3.1.x before 3.1.5 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arb...

  • EPSS 3.85%
  • Veröffentlicht 21.10.2010 19:00:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 allow remote attackers to cause a denial of service...

  • EPSS 4.47%
  • Veröffentlicht 09.09.2010 19:00:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Use-after-free vulnerability in the nsTreeSelection function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 might allow remote attackers to execute arbitrary code v...

  • EPSS 1.74%
  • Veröffentlicht 09.09.2010 19:00:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The XPCSafeJSObjectWrapper class in the SafeJSObjectWrapper (aka SJOW) implementation in Mozilla Firefox 3.6.x before 3.6.9 and Thunderbird 3.1.x before 3.1.3 does not properly restrict objects at the end of scope chains, which allows remote attacker...

  • EPSS 0.53%
  • Veröffentlicht 09.09.2010 19:00:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The XPCSafeJSObjectWrapper class in the SafeJSObjectWrapper (aka SJOW) implementation in Mozilla Firefox before 3.5.12, Thunderbird before 3.0.7, and SeaMonkey before 2.0.7 does not properly restrict scripted functions, which allows remote attackers ...