{"cve": "CVE-2025-59375", "updated": 1785074509, "url": "https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0354/", "affected": [{"ecosystem": "Debian:11", "package": "firefox-esr", "affected": null, "fixed": "140.9.0esr-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-59375"}, {"ecosystem": "Debian:12", "package": "firefox-esr", "affected": null, "fixed": "140.9.0esr-1~deb12u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-59375"}, {"ecosystem": "Debian:13", "package": "firefox-esr", "affected": null, "fixed": "140.9.0esr-1~deb13u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-59375"}, {"ecosystem": "Debian:14", "package": "firefox-esr", "affected": null, "fixed": "140.9.0esr-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-59375"}, {"ecosystem": "Debian:11", "package": "firefox-esr", "affected": null, "fixed": "140.9.0esr-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DLA-4510-1"}, {"ecosystem": "Debian:11", "package": "thunderbird", "affected": null, "fixed": "1:140.9.0esr-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-59375"}, {"ecosystem": "Debian:12", "package": "thunderbird", "affected": null, "fixed": "1:140.9.0esr-1~deb12u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-59375"}, {"ecosystem": "Debian:13", "package": "thunderbird", "affected": null, "fixed": "1:140.9.0esr-1~deb13u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-59375"}, {"ecosystem": "Debian:14", "package": "thunderbird", "affected": null, "fixed": "1:140.9.0esr-1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DEBIAN-CVE-2025-59375"}, {"ecosystem": "Debian:11", "package": "thunderbird", "affected": null, "fixed": "1:140.9.0esr-1~deb11u1", "status": "fixed", "ref": "https://osv.dev/vulnerability/DLA-4511-1"}, {"ecosystem": "SUSE:Linux Enterprise Module for Desktop Applications 15 SP7", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-ESPOS", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP4-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP5-ESPOS", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise High Performance Computing 15 SP5-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP4-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP5-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 15 SP6-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP4", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP Applications 15 SP6", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "openSUSE:Leap 15.6", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-150200.152.225.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1126-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 12 SP5-LTSS", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-112.304.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1127-1"}, {"ecosystem": "SUSE:Linux Enterprise Server LTSS Extended Security 12 SP5", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-112.304.2", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1127-1"}, {"ecosystem": "SUSE:Linux Enterprise Server 16.0", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-160000.1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:20978-1"}, {"ecosystem": "SUSE:Linux Enterprise Server for SAP applications 16.0", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-160000.1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:20978-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "MozillaFirefox", "affected": null, "fixed": "149.0-1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2026:10458-1"}, {"ecosystem": "openSUSE:Leap 16.0", "package": "MozillaFirefox", "affected": null, "fixed": "140.9.0-160000.1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2026:20439-1"}, {"ecosystem": "openSUSE:Leap 15.6", "package": "MozillaThunderbird", "affected": null, "fixed": "140.9.0-150200.8.263.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/SUSE-SU-2026:1163-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "MozillaThunderbird", "affected": null, "fixed": "140.9.0-1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2026:10447-1"}, {"ecosystem": "openSUSE:Tumbleweed", "package": "firefox-esr", "affected": null, "fixed": "140.9.0-1.1", "status": "fixed", "ref": "https://osv.dev/vulnerability/openSUSE-SU-2026:10413-1"}, {"ecosystem": "Red Hat:enterprise_linux:10.2", "package": "python3", "affected": null, "fixed": "0:3.12.13-2.el10_2", "status": "fixed", "ref": "https://osv.dev/vulnerability/RHSA-2026:19064"}]}