Beschreibung
Multiple vulnerabilities were found in Mozilla Thunderbird. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code.
Below is a complete list of vulnerabilities:
- Use-after-free vulnerability can be exploited remotely via specially designed HTML5 stream to cause denial of service.
- Inter-process Communication (IPC) vulnerability can be exploited remotely via attempt to communicate with the IPC object without validation to bypass security restrictions.
- Use-after-free vulnerability in the Libical libary in Thunderbird can be exploited remotely via a specially designed ICS calendar to cause a denial of service.
- Multiple memory corruption vulnerabilities can be exploited remotely to execute arbitrary code.
Ursprüngliche Informationshinweise
CVE Liste
- CVE-2018-18500 critical
- CVE-2018-18505 critical
- CVE-2018-18501 critical
- CVE-2016-5824 critical
Mehr erfahren
Informieren Sie sich über die Statistiken der in Ihrer Region verbreiteten Sicherheitslücken statistics.securelist.com
Sie haben einen Fehler in der Beschreibung der Schwachstelle gefunden? Mitteilen!