{"cve": "CVE-2025-3523", "updated": null, "url": null, "affected": [{"ecosystem": "Debian:11", "package": "thunderbird", "affected": null, "fixed": "1:128.10.1esr-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-3523"}, {"ecosystem": "Debian:12", "package": "thunderbird", "affected": null, "fixed": "1:128.10.0esr-1~deb12u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-3523"}, {"ecosystem": "Debian:13", "package": "thunderbird", "affected": null, "fixed": "1:128.10.0esr-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-3523"}, {"ecosystem": "Debian:14", "package": "thunderbird", "affected": null, "fixed": "1:128.10.0esr-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-3523"}, {"ecosystem": "Debian:11", "package": "thunderbird", "affected": null, "fixed": "1:128.10.1esr-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DLA-4167-1"}, {"ecosystem": "Ubuntu:22.04:LTS", "package": "thunderbird", "affected": null, "fixed": "1:128.12.0+build1-0ubuntu0.22.04.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/UBUNTU-CVE-2025-3523"}, {"ecosystem": "SUSE:Linux Enterprise Module for Package Hub 15 SP6", "package": "MozillaThunderbird", "affected": null, "fixed": "128.9.2-150200.8.209.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2025:1366-1"}, {"ecosystem": "SUSE:Linux Enterprise Workstation Extension 15 SP6", "package": "MozillaThunderbird", "affected": null, "fixed": "128.9.2-150200.8.209.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2025:1366-1"}, {"ecosystem": "openSUSE:Leap 15.6", "package": "MozillaThunderbird", "affected": null, "fixed": "128.9.2-150200.8.209.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2025:1366-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "MozillaThunderbird", "affected": null, "fixed": "128.9.2-1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2025:15000-1"}, {"ecosystem": "Red Hat:enterprise_linux:9::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el9_5", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4229"}, {"ecosystem": "Red Hat:rhel_aus:8.2::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el8_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4389"}, {"ecosystem": "Red Hat:rhel_eus:9.4::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el9_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4512"}, {"ecosystem": "Red Hat:rhel_eus:9.2::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el9_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4513"}, {"ecosystem": "Red Hat:rhel_e4s:9.0::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el9_0", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4514"}, {"ecosystem": "Red Hat:rhel_eus:8.8::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el8_8", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4617"}, {"ecosystem": "Red Hat:enterprise_linux:8::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el8_10", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4649"}, {"ecosystem": "Red Hat:rhel_aus:8.4::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4654"}, {"ecosystem": "Red Hat:rhel_e4s:8.4::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4654"}, {"ecosystem": "Red Hat:rhel_tus:8.4::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el8_4", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4654"}, {"ecosystem": "Red Hat:rhel_aus:8.6::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el8_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4665"}, {"ecosystem": "Red Hat:rhel_e4s:8.6::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el8_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4665"}, {"ecosystem": "Red Hat:rhel_tus:8.6::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.9.2-1.el8_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:4665"}, {"ecosystem": "Red Hat:enterprise_linux:9::appstream", "package": "thunderbird", "affected": null, "fixed": "0:128.10.0-1.el9_6", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:7435"}, {"ecosystem": "Red Hat:enterprise_linux:10.0", "package": "thunderbird", "affected": null, "fixed": "0:128.10.0-1.el10_0", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2025:7507"}]}