Kaspersky ID:
KLA48571
Detekováno:
03/14/2023
Aktualizováno:
03/28/2025

Popis

Multiple vulnerabilities were found in Mozilla Thunderbird. Malicious users can exploit these vulnerabilities to spoof user interface, cause denial of service, obtain sensitive information, execute arbitrary code.

Below is a complete list of vulnerabilities:

  1. Security UI vulnerability in Cross-origin iframe can be exploited to spoof user interface.
  2. Denial of service vulnerability in JIT compiler can be exploited to cause denial of service.
  3. Information disclosure vulnerability in Save As dialog on Windows can be exploited to obtain sensitive information.
  4. Out of bounds vulnerability can be exploited to cause denial of service.
  5. Denial of service vulnerability in Worklets can be exploited to cause denial of service.
  6. Memory safety vulnerability can be exploited to execute arbitrary code.

Oficiální doporučení

Související produkty

seznam CVE

  • CVE-2023-25751
    high
  • CVE-2023-28176
    critical
  • CVE-2023-28162
    critical
  • CVE-2023-28164
    high
  • CVE-2023-28163
    high
  • CVE-2023-25752
    high

Zobrazit více

Zjistěte statistiky zranitelností šířících se ve vaší oblasti statistics.securelist.com

Našli jste v popisu této chyby zabezpečení nepřesnost? Dej nám vědět!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Zjistěte více
Kaspersky Premium
Zjistěte více
Do you want to save your changes?
Your message has been sent successfully.