Mozilla

Thunderbird

2081 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 13.23%
  • Veröffentlicht 22.07.2009 18:30:00
  • Zuletzt bearbeitet 16.06.2026 23:09:30

The nsXULTemplateQueryProcessorRDF::CheckIsSeparator function in Mozilla Firefox before 3.0.12, SeaMonkey 2.0a1pre, and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arb...

  • EPSS 5.41%
  • Veröffentlicht 22.07.2009 18:30:00
  • Zuletzt bearbeitet 16.06.2026 23:09:30

Mozilla Firefox before 3.0.12 and Thunderbird allow remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via vectors involving double frame construction, related to (1) nsHTMLContentSink.cp...

Exploit
  • EPSS 6.62%
  • Veröffentlicht 22.07.2009 18:30:00
  • Zuletzt bearbeitet 16.06.2026 23:09:30

The JavaScript engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to (1) nsDOMClassInfo.cpp, (2...

  • EPSS 9.36%
  • Veröffentlicht 20.07.2009 18:30:01
  • Zuletzt bearbeitet 16.06.2026 23:09:39

Mozilla Firefox before 2.0.0.19 and 3.x before 3.0.5, SeaMonkey, and Thunderbird allow remote attackers to cause a denial of service (memory consumption and application crash) via a large integer value for the length property of a Select object, a re...

  • EPSS 3.8%
  • Veröffentlicht 25.06.2009 17:30:00
  • Zuletzt bearbeitet 16.06.2026 23:09:00

Mozilla Thunderbird before 2.0.0.22 and SeaMonkey before 1.1.17 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a multipart/alternative e-mail message containing a text/enhanced part that...

Exploit
  • EPSS 9.28%
  • Veröffentlicht 12.06.2009 21:30:00
  • Zuletzt bearbeitet 16.06.2026 23:07:11

The browser engine in Mozilla Firefox 3 before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vect...

Exploit
  • EPSS 9.18%
  • Veröffentlicht 12.06.2009 21:30:00
  • Zuletzt bearbeitet 16.06.2026 23:08:08

Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors involving "double fra...

Exploit
  • EPSS 9.18%
  • Veröffentlicht 12.06.2009 21:30:00
  • Zuletzt bearbeitet 16.06.2026 23:08:09

The JavaScript engine in Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vec...

Exploit
  • EPSS 2.03%
  • Veröffentlicht 12.06.2009 21:30:00
  • Zuletzt bearbeitet 16.06.2026 23:08:09

Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 use the HTTP Host header to determine the context of a document provided in a non-200 CONNECT response from a proxy server, which allows man-in-the-middle attacke...

  • EPSS 4.8%
  • Veröffentlicht 12.06.2009 21:30:00
  • Zuletzt bearbeitet 16.06.2026 23:08:10

The garbage-collection implementation in Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 sets an element's owner document to null in unspecified circumstances, which allows remote attackers to execute arbitrary...