VYPR

deb package

ubuntu/thunderbird

pkg:deb/ubuntu/thunderbird

Vulnerabilities (2)

  • CVE-2024-8394Sep 6, 2024
    affected >= 0

    When aborting the verification of an OTR chat session, an attacker could have caused a use-after-free bug leading to a potentially exploitable crash. This vulnerability affects Thunderbird < 128.2.

  • CVE-2024-8388Sep 3, 2024
    affected >= 0

    Multiple prompts and panels from both Firefox and the Android OS could be used to obscure the notification announcing the transition to fullscreen mode after the fix for CVE-2023-6870 in Firefox 121. This could lead to spoofing the browser UI if the sudden appearance of the promp