Multiple security issues were discovered in Thunderbird. If a user were tricked in to opening a specially crafted website in a browsing context, an attacker could potentially exploit these to cause a denial of service, or execute arbitrary code. (CVE-2018-5125, CVE-2018-5127, CVE-2018-5129, CVE-2018-5144, CVE-2018-5145, CVE-2018-5146)
{ "binaries": [ { "binary_name": "thunderbird", "binary_version": "1:52.7.0+build1-0ubuntu0.14.04.1" }, { "binary_name": "thunderbird-dev", "binary_version": "1:52.7.0+build1-0ubuntu0.14.04.1" }, { "binary_name": "thunderbird-globalmenu", "binary_version": "1:52.7.0+build1-0ubuntu0.14.04.1" }, { "binary_name": "thunderbird-gnome-support", "binary_version": "1:52.7.0+build1-0ubuntu0.14.04.1" }, { "binary_name": "thunderbird-mozsymbols", "binary_version": "1:52.7.0+build1-0ubuntu0.14.04.1" }, { "binary_name": "thunderbird-testsuite", "binary_version": "1:52.7.0+build1-0ubuntu0.14.04.1" }, { "binary_name": "xul-ext-calendar-timezones", "binary_version": "1:52.7.0+build1-0ubuntu0.14.04.1" }, { "binary_name": "xul-ext-gdata-provider", "binary_version": "1:52.7.0+build1-0ubuntu0.14.04.1" }, { "binary_name": "xul-ext-lightning", "binary_version": "1:52.7.0+build1-0ubuntu0.14.04.1" } ], "availability": "No subscription required" }
{ "cves": [ { "id": "CVE-2018-5125", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5127", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5129", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5144", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5145", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5146", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] } ], "ecosystem": "Ubuntu:14.04:LTS" }
{ "binaries": [ { "binary_name": "thunderbird", "binary_version": "1:52.7.0+build1-0ubuntu0.16.04.1" }, { "binary_name": "thunderbird-dev", "binary_version": "1:52.7.0+build1-0ubuntu0.16.04.1" }, { "binary_name": "thunderbird-globalmenu", "binary_version": "1:52.7.0+build1-0ubuntu0.16.04.1" }, { "binary_name": "thunderbird-gnome-support", "binary_version": "1:52.7.0+build1-0ubuntu0.16.04.1" }, { "binary_name": "thunderbird-mozsymbols", "binary_version": "1:52.7.0+build1-0ubuntu0.16.04.1" }, { "binary_name": "thunderbird-testsuite", "binary_version": "1:52.7.0+build1-0ubuntu0.16.04.1" }, { "binary_name": "xul-ext-calendar-timezones", "binary_version": "1:52.7.0+build1-0ubuntu0.16.04.1" }, { "binary_name": "xul-ext-gdata-provider", "binary_version": "1:52.7.0+build1-0ubuntu0.16.04.1" }, { "binary_name": "xul-ext-lightning", "binary_version": "1:52.7.0+build1-0ubuntu0.16.04.1" } ], "availability": "No subscription required" }
{ "cves": [ { "id": "CVE-2018-5125", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5127", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5129", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5144", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5145", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] }, { "id": "CVE-2018-5146", "severity": [ { "score": "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H", "type": "CVSS_V3" }, { "score": "medium", "type": "Ubuntu" } ] } ], "ecosystem": "Ubuntu:16.04:LTS" }