CVE-2025-13018
Description
Mitigation bypass in the DOM: Security component. This vulnerability was fixed in Firefox 145, Firefox ESR 140.5, Thunderbird 145, and Thunderbird 140.5.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Mitigation details
Description firefox: thunderbird: Mitigation bypass in the DOM: Security component Red Hat statement Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory. CVSS v3: 6.1 (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N) Errata / fixed releases ProductPackageAdvisoryReleased Red Hat Enterprise Linuxβ¦
Workaround
bypass in the DOM: Security component
Description
firefox: thunderbird: Mitigation bypass in the DOM: Security component
Red Hat statement
Red Hat Product Security rates the severity of this flaw as determined by the Mozilla Foundation Security Advisory.
CVSS v3: 6.1 (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N)
Errata / fixed releases
| Product | Package | Advisory | Released |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | firefox-0:140.5.0-2.el10_1 | RHSA-2025:21281 | 2025-11-13T00:00:00Z |
| Red Hat Enterprise Linux 10 | thunderbird-0:140.5.0-2.el10_1 | RHSA-2025:21843 | 2025-11-20T00:00:00Z |
| Red Hat Enterprise Linux 10.0 Extended Update Support | firefox-0:140.5.0-2.el10_0 | RHSA-2025:21120 | 2025-11-12T00:00:00Z |
| Red Hat Enterprise Linux 10.0 Extended Update Support | thunderbird-0:140.5.0-1.el10_0 | RHSA-2025:21844 | 2025-11-20T00:00:00Z |
| Red Hat Enterprise Linux 7 Extended Lifecycle Support | firefox-0:140.5.0-1.el7_9 | RHSA-2025:22371 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8 | thunderbird-0:140.5.0-2.el8_10 | RHSA-2025:21881 | 2025-11-20T00:00:00Z |
| Red Hat Enterprise Linux 8 | firefox-0:140.5.0-1.el8_10 | RHSA-2025:22363 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8.2 Advanced Update Support | firefox-0:140.5.0-1.el8_2 | RHSA-2025:22369 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8.2 Advanced Update Support | thunderbird-0:140.5.0-1.el8_2 | RHSA-2025:22792 | 2025-12-08T00:00:00Z |
| Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | firefox-0:140.5.0-1.el8_4 | RHSA-2025:22367 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | thunderbird-0:140.5.0-1.el8_4 | RHSA-2025:22791 | 2025-12-08T00:00:00Z |
| Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | firefox-0:140.5.0-1.el8_4 | RHSA-2025:22367 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On | thunderbird-0:140.5.0-1.el8_4 | RHSA-2025:22791 | 2025-12-08T00:00:00Z |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | firefox-0:140.5.0-1.el8_6 | RHSA-2025:22368 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support | thunderbird-0:140.5.0-1.el8_6 | RHSA-2025:22883 | 2025-12-09T00:00:00Z |
| Red Hat Enterprise Linux 8.6 Telecommunications Update Service | firefox-0:140.5.0-1.el8_6 | RHSA-2025:22368 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8.6 Telecommunications Update Service | thunderbird-0:140.5.0-1.el8_6 | RHSA-2025:22883 | 2025-12-09T00:00:00Z |
| Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | firefox-0:140.5.0-1.el8_6 | RHSA-2025:22368 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions | thunderbird-0:140.5.0-1.el8_6 | RHSA-2025:22883 | 2025-12-09T00:00:00Z |
| Red Hat Enterprise Linux 8.8 Telecommunications Update Service | firefox-0:140.5.0-1.el8_8 | RHSA-2025:22372 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8.8 Telecommunications Update Service | thunderbird-0:140.5.0-1.el8_8 | RHSA-2025:22882 | 2025-12-09T00:00:00Z |
| Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | firefox-0:140.5.0-1.el8_8 | RHSA-2025:22372 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions | thunderbird-0:140.5.0-1.el8_8 | RHSA-2025:22882 | 2025-12-09T00:00:00Z |
| Red Hat Enterprise Linux 9 | firefox-0:140.5.0-1.el9_7 | RHSA-2025:21280 | 2025-11-13T00:00:00Z |
| Red Hat Enterprise Linux 9 | thunderbird-0:140.5.0-1.el9_7 | RHSA-2025:21842 | 2025-11-20T00:00:00Z |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | firefox-0:140.5.0-1.el9_0 | RHSA-2025:22373 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions | thunderbird-0:140.5.0-1.el9_0 | RHSA-2025:22451 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | firefox-0:140.5.0-1.el9_2 | RHSA-2025:22375 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions | thunderbird-0:140.5.0-1.el9_2 | RHSA-2025:22450 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 9.4 Extended Update Support | firefox-0:140.5.0-1.el9_4 | RHSA-2025:22374 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 9.4 Extended Update Support | thunderbird-0:140.5.0-1.el9_4 | RHSA-2025:22449 | 2025-12-01T00:00:00Z |
| Red Hat Enterprise Linux 9.6 Extended Update Support | firefox-0:140.5.0-1.el9_6 | RHSA-2025:21121 | 2025-11-12T00:00:00Z |
| Red Hat Enterprise Linux 9.6 Extended Update Support | thunderbird-0:140.5.0-1.el9_6 | RHSA-2025:21841 | 2025-11-20T00:00:00Z |
Package state
| Product | Package | State |
|---|---|---|
| Red Hat Enterprise Linux 10 | rhel10/firefox-flatpak | Affected |
| Red Hat Enterprise Linux 10 | rhel10/thunderbird-flatpak | Affected |
| Red Hat Enterprise Linux 6 | firefox | Out of support scope |
| Red Hat Enterprise Linux 6 | thunderbird | Out of support scope |
| Red Hat Enterprise Linux 7 | thunderbird | Out of support scope |
Apply commands
yum update -y firefox
# or:
dnf upgrade -y firefox
Affected
| Vendor | Product | Version |
|---|---|---|
| redhat | Red Hat Enterprise Linux 10 | Affected |
| redhat | Red Hat Enterprise Linux 10 | Affected |
OS impact
SUSE Affected 1 release
| Version | Status | Fixed in |
|---|---|---|
| β | Affected | β |
Debian Fixed 5 releases
| Version | Status | Fixed in |
|---|---|---|
| trixie | Fixed | 140.5.0esr-1~deb13u1 |
| sid | Fixed | 145.0-1 |
| forky | Fixed | 140.5.0esr-1 |
| bullseye | Fixed | 140.5.0esr-1~deb11u1 |
| bookworm | Fixed | 140.5.0esr-1~deb12u1 |
Red Hat Fixed 2 releases
| Version | Status | Fixed in |
|---|---|---|
| 9 | Fixed | β |
| 8 | Fixed | β |
Rocky Linux Fixed 2 releases
| Version | Status | Fixed in |
|---|---|---|
| 9 | Fixed | β |
| 8 | Fixed | β |
References
- https://errata.rockylinux.org/RLSA-2025:22363
- https://errata.rockylinux.org/RLSA-2025:21881
- https://access.redhat.com/errata/RHSA-2025:21280
- https://access.redhat.com/errata/RHSA-2025:21842
- https://security-tracker.debian.org/tracker/CVE-2025-13018
- https://www.suse.com/security/cve/CVE-2025-13018.html
- https://errata.rockylinux.org/RLSA-2025:21280
- https://access.redhat.com/errata/RHSA-2025:21881
- https://bugzilla.redhat.com/2414079
- https://bugzilla.redhat.com/2414080
- https://bugzilla.redhat.com/2414083
- https://bugzilla.redhat.com/2414084
- https://bugzilla.redhat.com/2414085
- https://bugzilla.redhat.com/2414086
- https://bugzilla.redhat.com/2414090
- https://bugzilla.redhat.com/2414091
- https://bugzilla.redhat.com/2414092
- https://errata.almalinux.org/8/ALSA-2025-21881.html
- https://access.redhat.com/errata/RHSA-2025:22363
- https://errata.almalinux.org/8/ALSA-2025-22363.html
- https://errata.almalinux.org/9/ALSA-2025-21280.html
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.