Search CVE reports
101 – 110 of 222 results
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 2.0.0.5 and Thunderbird before 2.0.0.5 allow remote attackers to cause a denial of service (crash) via unspecified vectors that trigger memory corruption.
4 affected packages
firefox, iceape, midbrowser, mozilla-thunderbird
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
iceape | — | — | — | — |
midbrowser | — | — | — | — |
mozilla-thunderbird | — | — | — | — |
Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Firefox installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary...
3 affected packages
firefox, midbrowser, mozilla-thunderbird
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
midbrowser | — | — | — | — |
mozilla-thunderbird | — | — | — | — |
The focus handling for the onkeydown event in Mozilla Firefox 1.5.0.12, 2.0.0.4 and other versions before 2.0.0.8, and SeaMonkey before 1.1.5 allows remote attackers to change field focus and copy keystrokes via the "for"...
3 affected packages
firefox, mozilla-thunderbird, thunderbird
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
mozilla-thunderbird | — | — | — | — |
thunderbird | — | — | — | — |
Multiple vulnerabilities in the JavaScript engine for Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, Thunderbird 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and SeaMonkey 1.0.9 and 1.1.2 allow remote attackers to...
5 affected packages
firefox, iceape, lightning-sunbird, midbrowser, mozilla-thunderbird
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
iceape | — | — | — | — |
lightning-sunbird | — | — | — | — |
midbrowser | — | — | — | — |
mozilla-thunderbird | — | — | — | — |
Multiple vulnerabilities in the layout engine for Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, Thunderbird 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and SeaMonkey 1.0.9 and 1.1.2 allow remote attackers to...
5 affected packages
midbrowser, firefox, iceape, lightning-sunbird, mozilla-thunderbird
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
midbrowser | — | — | — | — |
firefox | — | — | — | — |
iceape | — | — | — | — |
lightning-sunbird | — | — | — | — |
mozilla-thunderbird | — | — | — | — |
CRLF injection vulnerability in the Digest Authentication support for Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 allows remote attackers to conduct HTTP request splitting attacks via LF (%0a) bytes in the username attribute.
3 affected packages
firefox, mozilla-thunderbird, thunderbird
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
mozilla-thunderbird | — | — | — | — |
thunderbird | — | — | — | — |
Some fixes available 6 of 21
The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all...
8 affected packages
fetchmail, iceape, im, mew, mew-beta...
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
fetchmail | — | — | — | — |
iceape | — | — | — | — |
im | — | — | — | — |
mew | — | — | — | — |
mew-beta | — | — | — | — |
mozilla-thunderbird | — | — | — | — |
wl | — | — | — | — |
wl-beta | — | — | — | — |
Integer overflow in Mozilla Thunderbird before 1.5.0.10 and SeaMonkey before 1.0.8 allows remote attackers to trigger a buffer overflow and possibly execute arbitrary code via a text/enhanced or text/richtext e-mail message with...
1 affected package
mozilla-thunderbird
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
mozilla-thunderbird | — | — | — | — |
Some fixes available 11 of 12
Stack-based buffer overflow in the SSLv2 support in Mozilla Network Security Services (NSS) before 3.11.5, as used by Firefox before 1.5.0.10 and 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, SeaMonkey before 1.0.8, and certain...
6 affected packages
firefox, iceape, lightning-sunbird, midbrowser, mozilla-thunderbird, xulrunner
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
iceape | — | — | — | — |
lightning-sunbird | — | — | — | — |
midbrowser | — | — | — | — |
mozilla-thunderbird | — | — | — | — |
xulrunner | — | — | — | — |
Some fixes available 11 of 12
Integer underflow in the SSLv2 support in Mozilla Network Security Services (NSS) before 3.11.5, as used by Firefox before 1.5.0.10 and 2.x before 2.0.0.2, SeaMonkey before 1.0.8, Thunderbird before 1.5.0.10, and certain Sun Java...
6 affected packages
firefox, iceape, lightning-sunbird, midbrowser, mozilla-thunderbird, xulrunner
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
iceape | — | — | — | — |
lightning-sunbird | — | — | — | — |
midbrowser | — | — | — | — |
mozilla-thunderbird | — | — | — | — |
xulrunner | — | — | — | — |