概述
Important: thunderbird security update
类型/严重性
Security Advisory: Important
标题
An update for thunderbird is now available for Red Hat Enterprise Linux 9.
Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.
描述
Mozilla Thunderbird is a standalone mail and newsgroup client.
Security Fix(es):
- firefox: Mitigation bypass in the DOM: Security component (CVE-2025-13018)
- firefox: Use-after-free in the Audio/Video component (CVE-2025-13014)
- firefox: Incorrect boundary conditions in the JavaScript: WebAssembly component (CVE-2025-13016)
- firefox: Same-origin policy bypass in the DOM: Workers component (CVE-2025-13019)
- firefox: Use-after-free in the WebRTC: Audio/Video component (CVE-2025-13020)
- firefox: Race condition in the Graphics component (CVE-2025-13012)
- firefox: Spoofing issue in Firefox (CVE-2025-13015)
- firefox: Mitigation bypass in the DOM: Core & HTML component (CVE-2025-13013)
- firefox: Same-origin policy bypass in the DOM: Notifications component (CVE-2025-13017)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
受影响的产品
-
Red Hat Enterprise Linux for x86_64 9 x86_64
-
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.8 x86_64
-
Red Hat Enterprise Linux for IBM z Systems 9 s390x
-
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.8 s390x
-
Red Hat Enterprise Linux for Power, little endian 9 ppc64le
-
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.8 ppc64le
-
Red Hat Enterprise Linux for ARM 64 9 aarch64
-
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.8 aarch64
-
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.8 ppc64le
-
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.8 x86_64
-
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.8 aarch64
-
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.8 s390x
-
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.8 x86_64
-
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.8 aarch64
-
Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.8 ppc64le
-
Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.8 s390x
修复
-
BZ - 2414079
- CVE-2025-13018 firefox: thunderbird: Mitigation bypass in the DOM: Security component
-
BZ - 2414080
- CVE-2025-13014 firefox: thunderbird: Use-after-free in the Audio/Video component
-
BZ - 2414083
- CVE-2025-13016 firefox: thunderbird: Incorrect boundary conditions in the JavaScript: WebAssembly component
-
BZ - 2414084
- CVE-2025-13019 firefox: thunderbird: Same-origin policy bypass in the DOM: Workers component
-
BZ - 2414085
- CVE-2025-13020 firefox: thunderbird: Use-after-free in the WebRTC: Audio/Video component
-
BZ - 2414086
- CVE-2025-13012 firefox: thunderbird: Race condition in the Graphics component
-
BZ - 2414090
- CVE-2025-13015 firefox: thunderbird: Spoofing issue in Firefox
-
BZ - 2414091
- CVE-2025-13013 firefox: thunderbird: Mitigation bypass in the DOM: Core & HTML component
-
BZ - 2414092
- CVE-2025-13017 firefox: thunderbird: Same-origin policy bypass in the DOM: Notifications component
备注:
可能有这些软件包的更新版本。
点击软件包名称查看详情。
Red Hat Enterprise Linux for x86_64 9
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| x86_64 |
|
thunderbird-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: f4933921eac4869904db86849bac536bddce77bcfcc37057f2e16f9b6bd3e948 |
|
thunderbird-debuginfo-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: badca049c110586b6249e849927617856ffb466d386fc38e47eb10730fd67897 |
|
thunderbird-debugsource-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: 622175de3c72f9e939cc928b2216bd193394a81dc1dfa39a9c423c06605107f2 |
Red Hat Enterprise Linux for x86_64 - Extended Update Support 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| x86_64 |
|
thunderbird-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: f4933921eac4869904db86849bac536bddce77bcfcc37057f2e16f9b6bd3e948 |
|
thunderbird-debuginfo-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: badca049c110586b6249e849927617856ffb466d386fc38e47eb10730fd67897 |
|
thunderbird-debugsource-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: 622175de3c72f9e939cc928b2216bd193394a81dc1dfa39a9c423c06605107f2 |
Red Hat Enterprise Linux for IBM z Systems 9
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| s390x |
|
thunderbird-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: 228b8ad28afcf16c061548bd79b127da9d3422b5e6cecb855991e017afabda94 |
|
thunderbird-debuginfo-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: 4272c20ffafa1fcc3580ed1cd79452ae2d9ccc18f61cdce6cbc0e1502e5a4e87 |
|
thunderbird-debugsource-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: a5a7218a14eb5e2cf982ed746f6afcbc8ee4de8ae32df1f1542477dd990362e7 |
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| s390x |
|
thunderbird-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: 228b8ad28afcf16c061548bd79b127da9d3422b5e6cecb855991e017afabda94 |
|
thunderbird-debuginfo-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: 4272c20ffafa1fcc3580ed1cd79452ae2d9ccc18f61cdce6cbc0e1502e5a4e87 |
|
thunderbird-debugsource-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: a5a7218a14eb5e2cf982ed746f6afcbc8ee4de8ae32df1f1542477dd990362e7 |
Red Hat Enterprise Linux for Power, little endian 9
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| ppc64le |
|
thunderbird-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: d5f38ee1b31cc4a44ffeeefb19049244fc9c0b646ab29f5f564c806599eaf99b |
|
thunderbird-debuginfo-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: 66498425b7663dca824410bea63e6b44c7f081eb1734cdf9ee97f8c9e35a25e3 |
|
thunderbird-debugsource-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: ef8bce323ef9edf243cb7e9d5de30c5a3a76454f05fdfc8e985988a115562790 |
Red Hat Enterprise Linux for Power, little endian - Extended Update Support 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| ppc64le |
|
thunderbird-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: d5f38ee1b31cc4a44ffeeefb19049244fc9c0b646ab29f5f564c806599eaf99b |
|
thunderbird-debuginfo-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: 66498425b7663dca824410bea63e6b44c7f081eb1734cdf9ee97f8c9e35a25e3 |
|
thunderbird-debugsource-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: ef8bce323ef9edf243cb7e9d5de30c5a3a76454f05fdfc8e985988a115562790 |
Red Hat Enterprise Linux for ARM 64 9
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| aarch64 |
|
thunderbird-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: b250b50f6159d26a2d8bf76840b0fd29a7f861150a59b352aa2be0d9b4704fda |
|
thunderbird-debuginfo-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: 4677cb41c072f1951b5c642c45742fb034a73c1e20fe07bf034722f6d20fa250 |
|
thunderbird-debugsource-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: 3c987f9db2be57d070982387491ac00b1b9d95a7c77e3956f7fb59251ad8f009 |
Red Hat Enterprise Linux for ARM 64 - Extended Update Support 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| aarch64 |
|
thunderbird-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: b250b50f6159d26a2d8bf76840b0fd29a7f861150a59b352aa2be0d9b4704fda |
|
thunderbird-debuginfo-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: 4677cb41c072f1951b5c642c45742fb034a73c1e20fe07bf034722f6d20fa250 |
|
thunderbird-debugsource-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: 3c987f9db2be57d070982387491ac00b1b9d95a7c77e3956f7fb59251ad8f009 |
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| ppc64le |
|
thunderbird-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: d5f38ee1b31cc4a44ffeeefb19049244fc9c0b646ab29f5f564c806599eaf99b |
|
thunderbird-debuginfo-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: 66498425b7663dca824410bea63e6b44c7f081eb1734cdf9ee97f8c9e35a25e3 |
|
thunderbird-debugsource-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: ef8bce323ef9edf243cb7e9d5de30c5a3a76454f05fdfc8e985988a115562790 |
Red Hat Enterprise Linux for x86_64 - Update Services for SAP Solutions 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| x86_64 |
|
thunderbird-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: f4933921eac4869904db86849bac536bddce77bcfcc37057f2e16f9b6bd3e948 |
|
thunderbird-debuginfo-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: badca049c110586b6249e849927617856ffb466d386fc38e47eb10730fd67897 |
|
thunderbird-debugsource-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: 622175de3c72f9e939cc928b2216bd193394a81dc1dfa39a9c423c06605107f2 |
Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| aarch64 |
|
thunderbird-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: b250b50f6159d26a2d8bf76840b0fd29a7f861150a59b352aa2be0d9b4704fda |
|
thunderbird-debuginfo-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: 4677cb41c072f1951b5c642c45742fb034a73c1e20fe07bf034722f6d20fa250 |
|
thunderbird-debugsource-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: 3c987f9db2be57d070982387491ac00b1b9d95a7c77e3956f7fb59251ad8f009 |
Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| s390x |
|
thunderbird-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: 228b8ad28afcf16c061548bd79b127da9d3422b5e6cecb855991e017afabda94 |
|
thunderbird-debuginfo-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: 4272c20ffafa1fcc3580ed1cd79452ae2d9ccc18f61cdce6cbc0e1502e5a4e87 |
|
thunderbird-debugsource-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: a5a7218a14eb5e2cf982ed746f6afcbc8ee4de8ae32df1f1542477dd990362e7 |
Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| x86_64 |
|
thunderbird-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: f4933921eac4869904db86849bac536bddce77bcfcc37057f2e16f9b6bd3e948 |
|
thunderbird-debuginfo-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: badca049c110586b6249e849927617856ffb466d386fc38e47eb10730fd67897 |
|
thunderbird-debugsource-140.5.0-1.el9_7.x86_64.rpm
|
SHA-256: 622175de3c72f9e939cc928b2216bd193394a81dc1dfa39a9c423c06605107f2 |
Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| aarch64 |
|
thunderbird-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: b250b50f6159d26a2d8bf76840b0fd29a7f861150a59b352aa2be0d9b4704fda |
|
thunderbird-debuginfo-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: 4677cb41c072f1951b5c642c45742fb034a73c1e20fe07bf034722f6d20fa250 |
|
thunderbird-debugsource-140.5.0-1.el9_7.aarch64.rpm
|
SHA-256: 3c987f9db2be57d070982387491ac00b1b9d95a7c77e3956f7fb59251ad8f009 |
Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| ppc64le |
|
thunderbird-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: d5f38ee1b31cc4a44ffeeefb19049244fc9c0b646ab29f5f564c806599eaf99b |
|
thunderbird-debuginfo-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: 66498425b7663dca824410bea63e6b44c7f081eb1734cdf9ee97f8c9e35a25e3 |
|
thunderbird-debugsource-140.5.0-1.el9_7.ppc64le.rpm
|
SHA-256: ef8bce323ef9edf243cb7e9d5de30c5a3a76454f05fdfc8e985988a115562790 |
Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 9.8
| SRPM |
|
thunderbird-140.5.0-1.el9_7.src.rpm
|
SHA-256: fbb7cc37f0619800fa1868c2319693e08ed3b7f040e08cc56b65f48bfb0d66cc |
| s390x |
|
thunderbird-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: 228b8ad28afcf16c061548bd79b127da9d3422b5e6cecb855991e017afabda94 |
|
thunderbird-debuginfo-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: 4272c20ffafa1fcc3580ed1cd79452ae2d9ccc18f61cdce6cbc0e1502e5a4e87 |
|
thunderbird-debugsource-140.5.0-1.el9_7.s390x.rpm
|
SHA-256: a5a7218a14eb5e2cf982ed746f6afcbc8ee4de8ae32df1f1542477dd990362e7 |