Description
Multiple vulnerabilities were found in Mozilla Thunderbird. Malicious users can exploit these vulnerabilities to cause denial of service, obtain sensitive information, bypass security restrictions, execute arbitrary code.
Below is a complete list of vulnerabilities:
- Use after free vulnerability in SharedWorkerService can be exploited to potentially cause denial of service.
- Timing attack vulnerability in NSS library can be exploited to obtain sensitive information.
- Security vulnerability can be exploited to bypass security restrictions and obtain sensitive information.
- Memory corruption vulnerability can be exploited to execute arbitrary code.
- Type confusion vulnerability in JS can be exploited to cause denial of service.
Original advisories
Related products
CVE list
- CVE-2020-12399 warning
- CVE-2020-12410 critical
- CVE-2020-12405 warning
- CVE-2020-12406 critical
- CVE-2020-12398 warning
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!