RHSA-2025:8308: Important: firefox security update
Important: firefox security update
Other sources
Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.Security Fix(es): firefox: thunderbird: Clickjacking vulnerability could have led to leaking saved payment card details (CVE-2025-5267) firefox: thunderbird: Potential local code execution in ?Copy as cURL? command (CVE-2025-5264) firefox: thunderbird: Memory safety bugs (CVE-2025-5268) firefox: thunderbird: Script element events leaked cross-origin resource status (CVE-2025-5266) firefox: thunderbird: Error handling for script execution was incorrectly isolated from web content (CVE-2025-5263) firefox: thunderbird: Memory safety bug (CVE-2025-5269) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2025:8308?
RHSA-2025:8308 is classified as an important security update for Mozilla Firefox.
How do I fix RHSA-2025:8308?
To address RHSA-2025:8308, update your Firefox package to version 128.11.0-1.el8_10.
What vulnerability types are addressed in RHSA-2025:8308?
RHSA-2025:8308 addresses a clickjacking vulnerability potentially exposing saved payment card details.
Which operating systems are affected by RHSA-2025:8308?
RHSA-2025:8308 affects Red Hat Enterprise Linux for various architectures including x86_64, Power, and ARM.
What is the main software affected by RHSA-2025:8308?
The primary software impacted by RHSA-2025:8308 is the Mozilla Firefox browser.