firefox-128.6.0-1.el9_5.ML.1

エラータID: AXSA:2025-9549:02

Release date: 
Thursday, January 16, 2025 - 13:28
Subject: 
firefox-128.6.0-1.el9_5.ML.1
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.

Security Fix(es):

* firefox: Use-after-free when breaking lines in text (CVE-2025-0238)
* firefox: Memory corruption when using JavaScript Text Segmentation (CVE-2025-0241)
* firefox: Alt-Svc ALPN validation failure when redirected (CVE-2025-0239)
* firefox: thunderbird: Memory safety bugs fixed in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbird 128.6 (CVE-2025-0243)
* firefox: thunderbird: Memory safety bugs fixed in Firefox 134, Thunderbird 134, Firefox ESR 115.19, Firefox ESR 128.6, Thunderbird 115.19, and Thunderbird 128.6 (CVE-2025-0242)
* firefox: WebChannel APIs susceptible to confused deputy attack (CVE-2025-0237)
* firefox: Compartment mismatch when parsing JavaScript JSON module (CVE-2025-0240)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2025-0237
The WebChannel API, which is used to transport various information across processes, did not check the sending principal but rather accepted the principal being sent. This could have led to privilege escalation attacks. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Thunderbird < 134, and Thunderbird ESR < 128.6.
CVE-2025-0238
Assuming a controlled failed memory allocation, an attacker could have caused a use-after-free, leading to a potentially exploitable crash. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Firefox ESR < 115.19, Thunderbird < 134, and Thunderbird ESR < 128.6.
CVE-2025-0239
When using Alt-Svc, ALPN did not properly validate certificates when the original server is redirecting to an insecure site. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Thunderbird < 134, and Thunderbird ESR < 128.6.
CVE-2025-0240
Parsing a JavaScript module as JSON could, under some circumstances, cause cross-compartment access, which may result in a use-after-free. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Thunderbird < 134, and Thunderbird ESR < 128.6.
CVE-2025-0241
When segmenting specially crafted text, segmentation would corrupt memory leading to a potentially exploitable crash. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Thunderbird < 134, and Thunderbird ESR < 128.6.
CVE-2025-0242
Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 115.18, Firefox ESR 128.5, Thunderbird 115.18, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Firefox ESR < 115.19, Thunderbird < 134, and Thunderbird ESR < 128.6.
CVE-2025-0243
Memory safety bugs present in Firefox 133, Thunderbird 133, Firefox ESR 128.5, and Thunderbird 128.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Thunderbird < 134, and Thunderbird ESR < 128.6.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. firefox-128.6.0-1.el9_5.ML.1.src.rpm
    MD5: 6d660c5596b19a9970df3f00aefe147b
    SHA-256: 2151c9da663b6c6cdb85b6b400259c466c4f29ad3f65e6b0a4d390fe89ab84a5
    Size: 947.23 MB

Asianux Server 9 for x86_64
  1. firefox-128.6.0-1.el9_5.ML.1.x86_64.rpm
    MD5: 34d88f13a3ab3491a38b6e40b55dbeff
    SHA-256: c2ec2a97a555c2edea3bd5cb298d5e24f27fd1ee687055a11feaf4241e1230a3
    Size: 123.40 MB
  2. firefox-x11-128.6.0-1.el9_5.ML.1.x86_64.rpm
    MD5: f867f32dffa8404e8f385652fc1da0bb
    SHA-256: 5d68d5a1133be9c4502f4850b9fe72ce14b061e0d927f09ea3ad3fa82cc84574
    Size: 13.23 kB