Computer Security
[EN] securityvulns.ru
no-pyccku



See also
  MOZILLA : Thunderbird 10.0
  MOZILLA : Thunderbird 9.0
  MOZILLA : Thunderbird 8.0
  MOZILLA : Thunderbird 3.6
  MOZILLA : Thunderbird 6.0
  MOZILLA : Thunderbird 3.1
  MOZILLA : Thunderbird 3.0
  MOZILLA : Thunderbird 2.0
  MOZILLA : Thunderbird 1.7
  MOZILLA : Thunderbird 1.2
  MOZILLA : Thunderbird 1.0
  MOZILLA : Thunderbird 0.7
  MOZILLA : Mozilla Thunderbird 0.7
Name:MOZILLA : Thunderbird 1.5

7!Mozilla Firefox / Thunderbird URL processing code execution
updated since 25.07.2007
document It's possible to inject shell characters into mailto:, news:, nntp: IRLs if Thunderbird is used as URL handler.
8!Mozilla Firefox / Thunderbird / SeaMonkey multiple security vulnerabilities
updated since 01.06.2007
document Multiple DoS conditions, addEventListener method crossite scripting. Multiple heap oberflows, integer overflows, etc.
7!Multiple Mozilla Firefox / Thunderbird / Seamonkey vulnerabilities
updated since 27.02.2007
document HTML filtering bypass, crossite scripting, weak hashing function, memory corruption, buffer overflow, etc.
7!Multiple Mozilla Firefox / Thunderbird / Seamonkey security vulnerabilities
document Crossite scripting with functions prototypes. Information leak. Buffer overflows on oversized Content-Type fields in messages. Memory corruption on SVG header. Crossite scripting with img.src. DoS. JavaScript watchpoint privilege escalation. CSS image cursor property buffer overflow. Multiple memory corruptions.
 Mozilla Network Security Services library memory leak
updated since 23.06.2006
document 256 bytes are leaked on every RSA cryptographic operation.
9!Multiple Mozilla / Firefox / Thunderbird / Netscape / Seamonkey security vulnerabilities
updated since 02.06.2006
document Localzone scripting with code execution, memory corruption, HTTP response splitting, array overflow, javascript filtering bypass.
8!Mozilla browsers and mail agents memory corruption
document Memory corruption on displaying corrupted HTML tables. Can be used for silent malware installation.
6!Mozilla Thunderbird buffer overflow
document Buffer overflow on oversized LDIF file entry.
 Mozilla Thunderbird / Mozilla weak authentication downgrade
document If SMTP authentication with CRAM-MD5 or TLS hadshake fails mail agent downgrades to plain text authentication, allowing active man-in-the-middle attacks.
                    

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server