{"cve": "CVE-2021-38502", "updated": null, "url": null, "affected": [{"ecosystem": "Arch", "package": "thunderbird", "affected": "91.1.2-1", "fixed": "91.2.0-1", "status": "fixed", "ref": "https://security.archlinux.org/AVG-2459"}, {"ecosystem": "Debian:11", "package": "thunderbird", "affected": null, "fixed": "1:91.4.1-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2021-38502"}, {"ecosystem": "Debian:12", "package": "thunderbird", "affected": null, "fixed": "1:91.2.1-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2021-38502"}, {"ecosystem": "Debian:13", "package": "thunderbird", "affected": null, "fixed": "1:91.2.1-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2021-38502"}, {"ecosystem": "Debian:14", "package": "thunderbird", "affected": null, "fixed": "1:91.2.1-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2021-38502"}, {"ecosystem": "Debian:9", "package": "thunderbird", "affected": null, "fixed": "1:91.4.1-1~deb9u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DLA-2874-1"}, {"ecosystem": "Debian:10", "package": "thunderbird", "affected": null, "fixed": "1:91.4.1-1~deb10u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DSA-5034-1"}, {"ecosystem": "Debian:11", "package": "thunderbird", "affected": null, "fixed": "1:91.4.1-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DSA-5034-1"}, {"ecosystem": "Ubuntu:18.04:LTS", "package": "thunderbird", "affected": null, "fixed": "1:91.5.0+build1-0ubuntu0.18.04.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2021-38502"}, {"ecosystem": "Ubuntu:20.04:LTS", "package": "thunderbird", "affected": null, "fixed": "1:91.5.0+build1-0ubuntu0.20.04.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2021-38502"}, {"ecosystem": "Ubuntu:22.04:LTS", "package": "thunderbird", "affected": null, "fixed": "1:91.3.1+build1-0ubuntu1", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2021-38502"}, {"ecosystem": "SUSE:Linux Enterprise Workstation Extension 15 SP2", "package": "MozillaThunderbird", "affected": null, "fixed": "91.4.0-8.45.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:4150-1"}, {"ecosystem": "SUSE:Linux Enterprise Workstation Extension 15 SP3", "package": "MozillaThunderbird", "affected": null, "fixed": "91.4.0-8.45.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2021:4150-1"}, {"ecosystem": "openSUSE:Leap 15.2", "package": "MozillaThunderbird", "affected": null, "fixed": "91.4.0-lp152.2.52.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2021:1635-1"}, {"ecosystem": "openSUSE:Leap 15.3", "package": "MozillaThunderbird", "affected": null, "fixed": "91.4.0-8.45.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2021:4150-1"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "thunderbird", "affected": null, "fixed": "0:91.2.0-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:3838"}, {"ecosystem": "Red Hat:rhel_eus:8.2::appstream", "package": "thunderbird", "affected": null, "fixed": "0:91.2.0-1.el8_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:3839"}, {"ecosystem": "Red Hat:rhel_eus:8.1::appstream", "package": "thunderbird", "affected": null, "fixed": "0:91.2.0-1.el8_1", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:3840"}, {"ecosystem": "Red Hat:enterprise_linux:7::client", "package": "thunderbird", "affected": null, "fixed": "0:91.2.0-1.el7_9", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:3841"}, {"ecosystem": "Red Hat:enterprise_linux:7::server", "package": "thunderbird", "affected": null, "fixed": "0:91.2.0-1.el7_9", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:3841"}, {"ecosystem": "Red Hat:enterprise_linux:7::workstation", "package": "thunderbird", "affected": null, "fixed": "0:91.2.0-1.el7_9", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2021:3841"}]}