|
1111
|
7.5
5.0
|
HIGH
Network
|
Using remote content in encrypted messages can lead to the disclosure of plaintext. This vulnerability affects Thunderbird ESR < 52.8 and Thunderbird < 52.8.
|
CWE-326
Inadequate Encryption Strength
|
CVE-2018-5184
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 13:08
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1112
|
9.8
7.5
|
CRITICAL
Network
|
A use-after-free vulnerability can occur while editing events in form elements on a page, resulting in a potentially exploitable crash. This vulnerability affects Firefox ESR < 52.6 and Thunderbird <…
|
CWE-416
Use After Free
|
CVE-2018-5096
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 13:08
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1113
|
9.8
7.5
|
CRITICAL
Network
|
A use-after-free vulnerability can occur during WebRTC connections when interacting with the DTMF timers. This results in a potentially exploitable crash. This vulnerability affects Firefox ESR < 52.…
|
CWE-416
Use After Free
|
CVE-2018-5091
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 13:08
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1114
|
5.3
5.0
|
MEDIUM
Network
|
RSS fields can inject new lines into the created email structure, modifying the message body. This vulnerability affects Thunderbird < 52.5.2.
|
CWE-74
Injection
|
CVE-2017-7848
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:32
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1115
|
9.8
7.5
|
CRITICAL
Network
|
A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still in use, resulting in a potentially exploitable crash. This vulnerability affect…
|
CWE-416
Use After Free
|
CVE-2017-7793
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 12:32
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1116
|
9.8
7.5
|
CRITICAL
Network
|
A buffer overflow can occur when the image renderer attempts to paint non-displayable SVG elements. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Fir…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-7786
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 12:32
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1117
|
9.8
7.5
|
CRITICAL
Network
|
A buffer overflow can occur when manipulating Accessible Rich Internet Applications (ARIA) attributes within the DOM. This results in a potentially exploitable crash. This vulnerability affects Thund…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-7785
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 12:32
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1118
|
7.5
5.0
|
HIGH
Network
|
An out-of-bounds read in WebGL with a maliciously crafted "ImageInfo" object during WebGL operations. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-7754
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:32
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1119
|
9.1
6.4
|
CRITICAL
Network
|
An out-of-bounds read occurs when applying style rules to pseudo-elements, such as ::first-line, using cached style data. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefo…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-7753
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:32
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1120
|
9.8
7.5
|
CRITICAL
Network
|
A use-after-free vulnerability with content viewer listeners that results in a potentially exploitable crash. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.
|
CWE-416
Use After Free
|
CVE-2017-7751
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:32
2018-06-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|