{"cve": "CVE-2024-9400", "updated": null, "url": null, "affected": [{"ecosystem": "Debian:13", "package": "thunderbird", "affected": null, "fixed": "1:128.3.0esr-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2024-9400"}, {"ecosystem": "Debian:14", "package": "thunderbird", "affected": null, "fixed": "1:128.3.0esr-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2024-9400"}, {"ecosystem": "Ubuntu:22.04:LTS", "package": "thunderbird", "affected": null, "fixed": "1:140.7.1+build1-0ubuntu0.22.04.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2024-9400"}, {"ecosystem": "SUSE:Linux Enterprise Software Development Kit 12 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-112.228.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3518-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 12 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-112.228.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3518-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 12 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-112.228.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3518-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Desktop Applications 15 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Desktop Applications 15 SP6", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP2-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP3-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-ESPOS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP2-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP3-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP4-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP2", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP3", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP4", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Enterprise Storage 7.1", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "openSUSE:Leap 15.5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "openSUSE:Leap 15.6", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.0-150200.152.152.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3519-1"}, {"ecosystem": "SUSE:Linux Enterprise Software Development Kit 12 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-112.231.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3603-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 12 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-112.231.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3603-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 12 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-112.231.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3603-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Desktop Applications 15 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Desktop Applications 15 SP6", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP2-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP3-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-ESPOS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP2-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP3-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP4-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP2", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP3", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP4", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Enterprise Storage 7.1", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "openSUSE:Leap 15.5", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "openSUSE:Leap 15.6", "package": "MozillaFirefox", "affected": null, "fixed": "128.3.1-150200.152.155.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3614-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Package Hub 15 SP5", "package": "MozillaThunderbird", "affected": null, "fixed": "128.3.0-150200.8.182.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3629-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Package Hub 15 SP6", "package": "MozillaThunderbird", "affected": null, "fixed": "128.3.0-150200.8.182.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3629-1"}, {"ecosystem": "SUSE:Linux Enterprise Workstation Extension 15 SP5", "package": "MozillaThunderbird", "affected": null, "fixed": "128.3.0-150200.8.182.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3629-1"}, {"ecosystem": "SUSE:Linux Enterprise Workstation Extension 15 SP6", "package": "MozillaThunderbird", "affected": null, "fixed": "128.3.0-150200.8.182.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3629-1"}, {"ecosystem": "openSUSE:Leap 15.5", "package": "MozillaThunderbird", "affected": null, "fixed": "128.3.0-150200.8.182.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3629-1"}, {"ecosystem": "openSUSE:Leap 15.6", "package": "MozillaThunderbird", "affected": null, "fixed": "128.3.0-150200.8.182.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2024:3629-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "MozillaFirefox", "affected": null, "fixed": "131.0-1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2024:14385-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "MozillaThunderbird", "affected": null, "fixed": "128.3.1-1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2024:14394-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "firefox-esr", "affected": null, "fixed": "128.5.1-1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2024:14572-1"}, {"ecosystem": "Red Hat:rhel_e4s:9.0::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el9_0", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7621"}, {"ecosystem": "Red Hat:rhel_eus:9.2::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el9_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7622"}, {"ecosystem": "Red Hat:rhel_aus:8.2::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el8_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7646"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el8_10", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7700"}, {"ecosystem": "Red Hat:rhel_els:7", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el7_9", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7702"}, {"ecosystem": "Red Hat:rhel_aus:8.4::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7703"}, {"ecosystem": "Red Hat:rhel_e4s:8.4::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7703"}, {"ecosystem": "Red Hat:rhel_tus:8.4::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7703"}, {"ecosystem": "Red Hat:rhel_aus:8.6::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el8_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7704"}, {"ecosystem": "Red Hat:rhel_e4s:8.6::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el8_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7704"}, {"ecosystem": "Red Hat:rhel_tus:8.6::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el8_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7704"}, {"ecosystem": "Red Hat:rhel_eus:8.8::appstream", "package": "firefox", "affected": null, "fixed": "0:128.3.0-1.el8_8", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7842"}, {"ecosystem": "Red Hat:enterprise_linux:9::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el9_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7552"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el8_10", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7699"}, {"ecosystem": "Red Hat:rhel_eus:9.2::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el9_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7853"}, {"ecosystem": "Red Hat:rhel_aus:8.4::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7854"}, {"ecosystem": "Red Hat:rhel_e4s:8.4::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7854"}, {"ecosystem": "Red Hat:rhel_tus:8.4::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7854"}, {"ecosystem": "Red Hat:rhel_e4s:9.0::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el9_0", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7855"}, {"ecosystem": "Red Hat:rhel_aus:8.2::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el8_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:7856"}, {"ecosystem": "Red Hat:rhel_eus:8.8::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.1-1.el8_8", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:8166"}, {"ecosystem": "Red Hat:rhel_aus:8.6::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el8_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:8169"}, {"ecosystem": "Red Hat:rhel_e4s:8.6::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el8_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:8169"}, {"ecosystem": "Red Hat:rhel_tus:8.6::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.3.0-1.el8_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2024:8169"}]}