Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:8608

Опубликовано: 03 окт. 2025
Источник: rocky
Оценка: Important

Описание

Important: thunderbird security update

Mozilla Thunderbird is a standalone mail and newsgroup client.

Security Fix(es):

  • firefox: thunderbird: Out-of-bounds access when resolving Promise objects (CVE-2025-4918)

  • firefox: thunderbird: Out-of-bounds access when optimizing linear sums (CVE-2025-4919)

  • firefox: thunderbird: Clickjacking vulnerability could have led to leaking saved payment card details (CVE-2025-5267)

  • firefox: thunderbird: Potential local code execution in ?Copy as cURL? command (CVE-2025-5264)

  • firefox: thunderbird: Memory safety bugs (CVE-2025-5268)

  • firefox: thunderbird: Script element events leaked cross-origin resource status (CVE-2025-5266)

  • firefox: thunderbird: Error handling for script execution was incorrectly isolated from web content (CVE-2025-5263)

  • firefox: thunderbird: Memory safety bug (CVE-2025-5269)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
thunderbirdx86_641.el10_0thunderbird-128.11.0-1.el10_0.x86_64.rpm

Показывать по

Связанные уязвимости

oracle-oval
4 месяца назад

ELSA-2025-8608: thunderbird security update (IMPORTANT)

oracle-oval
5 месяцев назад

ELSA-2025-8607: thunderbird security update (IMPORTANT)

rocky
3 месяца назад

Important: thunderbird security update

oracle-oval
5 месяцев назад

ELSA-2025-8756: thunderbird security update (IMPORTANT)

CVSS3: 9.1
redos
5 месяцев назад

Множественные уязвимости firefox