Kaspersky ID:
KLA64090
Data de detecção:
02/20/2024
Atualizado:
01/28/2026

Descrição

Multiple vulnerabilities were found in Mozilla Thunderbird. Malicious users can exploit these vulnerabilities to cause denial of service, spoof user interface, gain privileges, obtain sensitive information, execute arbitrary code, bypass security restrictions.

Below is a complete list of vulnerabilities:

  1. Out-of-bounds memory read in networking channels can be exploited to cause denial of service.
  2. Security UI vulnerability can be exploited to spoof user interface.
  3. Security UI vulnerability in Fullscreen Notification can be exploited to spoof user interface.
  4. An elevation of privilege vulnerability can be exploited remotely to gain privileges.
  5. Information disclosure vulnerability can be exploited to obtain sensitive information.
  6. Memory safety vulnerability can be exploited to execute arbitrary code.
  7. Security vulnerability can be exploited to bypass security restrictions.

Comunicados originais

Exploração

Public exploits exist for this vulnerability.

Produtos relacionados

Lista de CVE

  • CVE-2024-1546
    critical
  • CVE-2024-1548
    warning
  • CVE-2024-1550
    high
  • CVE-2024-1551
    high
  • CVE-2024-1547
    high
  • CVE-2024-1549
    high
  • CVE-2024-1552
    critical
  • CVE-2024-1553
    critical

Saiba mais

Descubra as estatísticas das vulnerabilidades que se espalham em sua região statistics.securelist.com

Encontrou uma imprecisão na descrição desta vulnerabilidade? Avise-nos!
Kaspersky Next:
cibersegurança redefinida
Saber mais
Novo Kaspersky!
Sua vida dgital merece proteção completa!
Saber mais
Do you want to save your changes?
Your message has been sent successfully.