thunderbird is vulnerable to denial of service (DoS) attacks. The vulnerability exists through multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
lists.opensuse.org/opensuse-security-announce/2015-07/msg00025.html
lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.html
lists.opensuse.org/opensuse-security-announce/2015-07/msg00033.html
lists.opensuse.org/opensuse-security-announce/2015-07/msg00034.html
lists.opensuse.org/opensuse-security-announce/2015-08/msg00021.html
rhn.redhat.com/errata/RHSA-2015-1207.html
rhn.redhat.com/errata/RHSA-2015-1455.html
www.debian.org/security/2015/dsa-3300
www.debian.org/security/2015/dsa-3324
www.mozilla.org/security/announce/2015/mfsa2015-59.html
www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.html
www.securityfocus.com/bid/75541
www.securitytracker.com/id/1032783
www.securitytracker.com/id/1032784
www.ubuntu.com/usn/USN-2656-1
www.ubuntu.com/usn/USN-2656-2
www.ubuntu.com/usn/USN-2673-1
access.redhat.com/security/updates/classification/#important
bugzilla.mozilla.org/show_bug.cgi?id=1143679
bugzilla.mozilla.org/show_bug.cgi?id=1154876
bugzilla.mozilla.org/show_bug.cgi?id=1160884
bugzilla.mozilla.org/show_bug.cgi?id=1164567
rhn.redhat.com/errata/RHSA-2015-1455.html
security.gentoo.org/glsa/201512-10
www.mozilla.org/en-US/security/known-vulnerabilities/thunderbird/#thunderbird31.8