Описание
Same-origin policy bypass in the Layout component. This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| firefox | fixed | 143.0-1 | package | |
| firefox-esr | fixed | 140.3.0esr-1 | package | |
| thunderbird | fixed | 1:140.3.0esr-1 | package |
Примечания
https://www.mozilla.org/en-US/security/advisories/mfsa2025-73/#CVE-2025-10529
https://www.mozilla.org/en-US/security/advisories/mfsa2025-75/#CVE-2025-10529
https://www.mozilla.org/en-US/security/advisories/mfsa2025-78/#CVE-2025-10529
EPSS
Связанные уязвимости
This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3.
This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3.
Same-origin policy bypass in the Layout component. This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3.
This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3.
Уязвимость компонента Layout браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код
EPSS