CVE-2025-1014

Description

Certificate length was not properly checked when added to a certificate store. In practice only trusted data was processed. This vulnerability was fixed in Firefox 135, Firefox ESR 128.7, Thunderbird 128.7, and Thunderbird 135.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.212

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities are fixed in Mozilla Firefox ESR (128) (128.7.0)Windows
Multiple vulnerabilities are fixed in Mozilla Firefox ESR (128) (x64) (128.7.0)Windows
Multiple vulnerabilities are fixed in Mozilla Firefox (135.0)Windows
Multiple vulnerabilities are fixed in Mozilla Firefox (x64) (135.0)Windows
Multiple vulnerabilities are fixed in Mozilla Thunderbird (128.7.0)Windows
Multiple vulnerabilities are fixed in Mozilla Thunderbird (x64) (128.7.0)Windows
Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 128.6.99Windows
Multiple Vulnerabilities are affected in Mozilla_Firefox 128.6.99Windows
Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 134.99Windows
Multiple Vulnerabilities are affected in Mozilla_Firefox 134.99Windows
Multiple Vulnerabilities are affected in Mozilla Thunderbird 128.6.99Windows
Multiple Vulnerabilities are affected in Mozilla Thunderbird 134.99Windows
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (135.0)Mac
Multiple vulnerabilities are fixed in Mozilla Firefox For Mac (135.0.1)Mac
Multiple vulnerabilities are fixed in Mozilla Thunderbird For Mac (128.7.0)Mac
Multiple vulnerabilities are fixed in Mozilla Thunderbird For Mac (128.7.1)Mac
Multiple vulnerabilities are fixed in Mozilla Thunderbird For Mac 135Mac
Multiple vulnerabilities are fixed in Mozilla Firefox ESR for MAC 128.7.0Mac
(RHSA-2025:1066)Important: security update firefox-x11-128.7.0-1.el9_5.x86_64.rpmLinux
(RHSA-2025:1066)Important: security update firefox-128.7.0-1.el9_5.x86_64.rpmLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-en-ca_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-en-gb_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-es-ar_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-es-es_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-es-mx_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-et_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-eu_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-hu_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-fr_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-fy-nl_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ga-ie_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-gd_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-gl_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-he_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-hr_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-hsb_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-fi_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird_128.7.0esr-1~deb12u1_amd64.debLinux
thunderbird security update(DSA-5860-1) thunderbird_128.7.0esr-1~deb12u1_i386.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-af_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-all_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ar_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ast_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-be_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-el_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-br_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ca_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-cak_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-cs_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-cy_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-da_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-de_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-dsb_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-bg_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-pt-br_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-pt-pt_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-rm_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ro_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ru_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-sk_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-sl_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-pl_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-sr_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-sv-se_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-th_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-tr_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-uk_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-uz_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-vi_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-zh-cn_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-sq_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-zh-tw_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-id_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-is_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-it_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ja_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ka_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-kab_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-kk_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ko_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-lt_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-lv_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-ms_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-nb-no_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-nl_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-nn-no_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-hy-am_128.7.0esr-1~deb12u1_all.debLinux
thunderbird security update(DSA-5860-1) thunderbird-l10n-pa-in_128.7.0esr-1~deb12u1_all.debLinux
SUSE-SU-2025:0374-1(Desktop Applications Module 15-SP6) MozillaFirefox-128.7.0-150200.152.170.1.x86_64.rpmLinux
SUSE-SU-2025:0374-1(Desktop Applications Module 15-SP6) MozillaFirefox-debuginfo-128.7.0-150200.152.170.1.x86_64.rpmLinux
SUSE-SU-2025:0374-1(Desktop Applications Module 15-SP6) MozillaFirefox-devel-128.7.0-150200.152.170.1.noarch.rpmLinux
SUSE-SU-2025:0374-1(Desktop Applications Module 15-SP6) MozillaFirefox-translations-common-128.7.0-150200.152.170.1.x86_64.rpmLinux
SUSE-SU-2025:0374-1(Desktop Applications Module 15-SP6) MozillaFirefox-translations-other-128.7.0-150200.152.170.1.x86_64.rpmLinux
SUSE-SU-2025:0374-1(Desktop Applications Module 15-SP6) MozillaFirefox-debugsource-128.7.0-150200.152.170.1.x86_64.rpmLinux
Thunderbird update (ELSA-2025-1184) thunderbird-128.7.0-1.0.1.el9_5.x86_64.rpmLinux
(RHSA-2025:1184)Important: security update thunderbird-128.7.0-1.el9_5.x86_64.rpmLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-rm_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-pt-pt_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-pt-br_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-pl_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-pa-in_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-oc_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-nn-no_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-nl_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ne-np_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-nb-no_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-my_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ms_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-mr_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-mk_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-lv_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-lt_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-lij_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ko_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-kn_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-km_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-kk_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-kab_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ka_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ja_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-it_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-is_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-id_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ia_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-hy-am_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-hu_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-hsb_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-hr_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-hi-in_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-he_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-gu-in_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-gn_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-gl_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-gd_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ga-ie_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-fy-nl_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-fur_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-fr_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-fi_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ff_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-fa_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-eu_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-et_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-es-mx_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-es-es_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-es-cl_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-es-ar_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-eo_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-en-gb_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-en-ca_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-el_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-dsb_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-de_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-da_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-cy_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-cs_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-cak_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ca-valencia_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ca_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-bs_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-br_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-bn_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-bg_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-be_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-az_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ast_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ar_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-an_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-all_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-af_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ach_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr_128.7.0esr-1~deb12u1_i386.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr_128.7.0esr-1~deb12u1_amd64.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-zh-tw_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-zh-cn_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-xh_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-vi_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-uz_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ur_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-uk_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-trs_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-tr_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-tl_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-th_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ro_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ru_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-sc_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-sco_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-si_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-sk_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-skr_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-sl_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-son_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-sq_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-sr_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-sv-se_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-szl_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-ta_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-te_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-tg_128.7.0esr-1~deb12u1_all.debLinux
firefox-esr security update(DSA-5858-1) firefox-esr-l10n-sat_128.7.0esr-1~deb12u1_all.debLinux
Firefox update (ELSA-2025-1283) firefox-128.7.0-1.0.1.el8_10.x86_64.rpmLinux
Thunderbird update (ELSA-2025-1292) thunderbird-128.7.0-1.0.1.el8_10.x86_64.rpmLinux
Mozilla Open Source web browser (USN-7263-1) firefox_135.0+build2-0ubuntu0.20.04.1_amd64.debLinux
(RHSA-2025:1283)Important: security update firefox-128.7.0-1.el8_10.x86_64.rpmLinux
(RHSA-2025:1292)Important: security update thunderbird-128.7.0-1.el8_10.x86_64.rpmLinux
firefox security update (RLSA-2025:1283) firefox-128.7.0-1.el8_10.x86_64.rpmLinux
thunderbird security update (RLSA-2025:1292) thunderbird-128.7.0-1.el8_10.x86_64.rpmLinux
thunderbird Security Update (ALAS-2025-2765) thunderbird-128.7.0-1.amzn2.0.1.x86_64.rpmLinux
thunderbird Security Update (ALAS-2025-2789) thunderbird-128.7.0-1.amzn2.0.2.x86_64.rpmLinux
Mozilla Open Source mail and newsgroup client (USN-7663-1) USN-7663-1 thunderbird_128.12.0+build1-0ubuntu0.22.04.1_amd64.debLinux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-345087Mozilla Firefox (135.0)
PATCH-345088Mozilla Firefox (x64) (135.0)
PATCH-345122Mozilla Thunderbird (128.7.0)
PATCH-345123Mozilla Thunderbird (x64) (128.7.0)
PATCH-351030Mozilla Firefox (x64) (142.0.1)
PATCH-351029Mozilla Firefox (142.0.1)
PATCH-351030Mozilla Firefox (x64) (142.0.1)
PATCH-351029Mozilla Firefox (142.0.1)
PATCH-611870Mozilla Firefox For Mac (142.0.1)
PATCH-611870Mozilla Firefox For Mac (142.0.1)
PATCH-611353Mozilla Thunderbird For Mac (128.12.0)
PATCH-611353Mozilla Thunderbird For Mac (128.12.0)
PATCH-611807Mozilla Thunderbird For Mac (142.0)
PATCH-611808Mozilla Firefox ESR for MAC 128.14.0

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234