説明
Multiple serious vulnerabilities were found in Mozilla Thunderbird. Malicious users can exploit these vulnerabilities to cause denial of service, bypass security restrictions and obtain sensitive information.
Below is a complete list of vulnerabilities:
- A buffer overflow vulnerability can be exploited remotely to cause denial of service;
- Multiple use-after-free vulnerabilities can be exploited remotely to cause denial of service;
- An integer overflow vulnerability in SwizzleData can be exploited remotely to cause denial of service;
- An integer overflow vulnerability in SSSE3 scaler can be exploited remotely to cause denial of service;
- A type confusion vulnerability can be exploited remotely to cause denial of service;
- A CORS bypass vulnerability in NPAPI plugins can be exploited remotely to bypass security restrictions;
- Multiple unspecified vulnerabilities can be exploited locally to obtain sensitive information;
- An integer overflow vulnerability in Skia scaler can be exploited remotely to cause denial of service.
オリジナルアドバイザリー
エクスプロイテーション
Public exploits exist for this vulnerability.
関連製品
CVEリスト
- CVE-2018-12359 critical
- CVE-2018-12360 critical
- CVE-2018-12361 critical
- CVE-2018-12362 critical
- CVE-2018-12363 critical
- CVE-2018-12364 critical
- CVE-2018-12365 high
- CVE-2018-12366 high
- CVE-2018-12367 warning
- CVE-2018-12368 critical
- CVE-2018-12371 critical
- CVE-2018-5156 critical
- CVE-2018-5187 critical
- CVE-2018-5188 critical
も参照してください
お住まいの地域に広がる脆弱性の統計をご覧ください statistics.securelist.com
この脆弱性についての記述に不正確な点がありますか? お知らせください!