Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:8196

Опубликовано: 03 окт. 2025
Источник: rocky
Оценка: Important

Описание

Important: thunderbird security update

Mozilla Thunderbird is a standalone mail and newsgroup client.

Security Fix(es):

  • thunderbird: JavaScript Execution via Spoofed PDF Attachment and file:/// Link (CVE-2025-3909)

  • thunderbird: Sender Spoofing via Malformed From Header in Thunderbird (CVE-2025-3875)

  • thunderbird: Unsolicited File Download, Disk Space Exhaustion, and Credential Leakage via mailbox:/// Links (CVE-2025-3877)

  • thunderbird: Tracking Links in Attachments Bypassed Remote Content Blocking (CVE-2025-3932)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
thunderbirdx86_641.el10_0thunderbird-128.10.1-1.el10_0.x86_64.rpm

Показывать по

Связанные уязвимости

suse-cvrf
5 месяцев назад

Security update for MozillaThunderbird

suse-cvrf
5 месяцев назад

Security update for MozillaThunderbird

oracle-oval
5 месяцев назад

ELSA-2025-8203: thunderbird security update (IMPORTANT)

oracle-oval
4 месяца назад

ELSA-2025-8196: thunderbird security update (IMPORTANT)

oracle-oval
5 месяцев назад

ELSA-2025-8756: thunderbird security update (IMPORTANT)