Kaspersky ID:
KLA90901
Дата обнаружения:
24/02/2026
Обновлено:
25/02/2026

Описание

Multiple vulnerabilities were found in Mozilla Thunderbird. Malicious users can exploit these vulnerabilities to execute arbitrary code, cause denial of service, gain privileges, bypass security restrictions, obtain sensitive information, spoof user interface.

Below is a complete list of vulnerabilities:

  1. Use after free vulnerability can be exploited to cause denial of service or execute arbitrary code.
  2. An elevation of privilege vulnerability in Netmonitor can be exploited remotely to gain privileges.
  3. Memory safety vulnerability can be exploited to execute arbitrary code.
  4. Security vulnerability in Networking can be exploited to bypass security restrictions.
  5. A remote code execution vulnerability in DOM: Core & HTML component can be exploited remotely to execute arbitrary code.
  6. Use after free vulnerability in JavaScript Engine can be exploited to cause denial of service or execute arbitrary code.
  7. Use after free vulnerability in DOM: Window and Location can be exploited to cause denial of service or execute arbitrary code.
  8. Use after free vulnerability in JavaScript: GC can be exploited to cause denial of service or execute arbitrary code.
  9. Use after free vulnerability in DOM: Bindings (WebIDL) and Location can be exploited to cause denial of service or execute arbitrary code.
  10. Information disclosure vulnerability in JIT can be exploited to obtain sensitive information.
  11. Heap buffer overflow vulnerability in JavaScript: Standard Library can be exploited to cause denial of service.
  12. Heap buffer overflow vulnerability can be exploited to cause denial of service.
  13. Security UI vulnerability can be exploited to spoof user interface.
  14. An elevation of privilege vulnerability can be exploited remotely to gain privileges.
  15. Security vulnerability can be exploited to bypass security restrictions.

Первичный источник обнаружения

Эксплуатация

Связанные продукты

Список CVE

  • CVE-2026-2757
    unknown
  • CVE-2026-2758
    unknown
  • CVE-2026-2759
    unknown
  • CVE-2026-2760
    unknown
  • CVE-2026-2761
    unknown
  • CVE-2026-2762
    unknown
  • CVE-2026-2763
    unknown
  • CVE-2026-2764
    unknown
  • CVE-2026-2765
    unknown
  • CVE-2026-2766
    unknown
  • CVE-2026-2767
    unknown
  • CVE-2026-2768
    unknown
  • CVE-2026-2769
    critical
  • CVE-2026-2770
    unknown
  • CVE-2026-2771
    unknown
  • CVE-2026-2772
    unknown
  • CVE-2026-2773
    unknown
  • CVE-2026-2774
    unknown
  • CVE-2026-2775
    unknown
  • CVE-2026-2776
    unknown
  • CVE-2026-2777
    unknown
  • CVE-2026-2778
    unknown
  • CVE-2026-2779
    unknown
  • CVE-2026-2780
    unknown
  • CVE-2026-2781
    unknown
  • CVE-2026-2782
    unknown
  • CVE-2026-2783
    unknown
  • CVE-2026-2784
    unknown
  • CVE-2026-2785
    unknown
  • CVE-2026-2786
    unknown
  • CVE-2026-2787
    unknown
  • CVE-2026-2788
    unknown
  • CVE-2026-2789
    unknown
  • CVE-2026-2790
    unknown
  • CVE-2026-2791
    unknown
  • CVE-2026-2792
    unknown
  • CVE-2026-2793
    unknown
  • CVE-2026-2795
    unknown
  • CVE-2026-2796
    unknown
  • CVE-2026-2797
    unknown
  • CVE-2026-2798
    critical
  • CVE-2026-2799
    unknown
  • CVE-2026-2800
    unknown
  • CVE-2026-2801
    unknown
  • CVE-2026-2802
    warning
  • CVE-2026-2803
    unknown
  • CVE-2026-2804
    high
  • CVE-2026-2805
    unknown
  • CVE-2026-2806
    unknown
  • CVE-2026-2807
    unknown

Смотрите также

Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com

Нашли неточность в описании этой уязвимости? Дайте нам знать!
Kaspersky IT Security Calculator:
Оцените ваш профиль кибербезопасности
Узнать больше
Встречай новый Kaspersky!
Каждая минута твоей онлайн-жизни заслуживает топовой защиты.
Узнать больше
Do you want to save your changes?
Your message has been sent successfully.