跳转到帖子

Oracle Linux: CVE-2025-1014: ELSA-2025-1184: thunderbird security update (IMPORTANT) (Multiple Advisories)

recommended_posts

发布于
  • Members

Oracle Linux: CVE-2025-1014: ELSA-2025-1184:thunderbird security update (IMPORTANT) (Multiple Advisories)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
02/04/2025
Created
02/12/2025
Added
02/10/2025
Modified
02/13/2025

Description

Certificate length was not properly checked when added to a certificate store. In practice only trusted data was processed. This vulnerability affects Firefox < 135, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird < 135.

Solution(s)

  • oracle-linux-upgrade-firefox
  • oracle-linux-upgrade-thunderbird

References

  • https://attackerkb.com/topics/cve-2025-1014
  • CVE - 2025-1014
  • ELSA-2025-1184
  • ELSA-2025-1292
  • ELSA-2025-1283
  • ELSA-2025-1132
  • 查看数 711
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。

游客
回帖…