发布时间: 2025年4月13日
修改时间: 2025年4月13日
If there was a PAC URL set and the server that hosts the PAC was not reachable, OCSP requests would have been blocked, resulting in incorrect error pages being shown. This vulnerability affects Firefox < 102, Firefox ESR < 91.11, Thunderbird < 102, and Thunderbird < 91.11.
NVD | openEuler | |
---|---|---|
CVSS评分 | 4.3 | 4.3 |
Attack Vector | Network | Network |
Attack Complexity | Low | Low |
Privileges Required | None | None |
User Interaction | Required | Required |
Scope | Unchanged | Unchanged |
Confidentiality | None | None |
Integrity | Low | Low |
Availability | None | None |
公告名 | 概要 | 发布时间 |
---|---|---|
KylinSec-SA-2025-2323 | If there was a PAC URL set and the server that hosts the PAC was not reachable, OCSP requests would have been blocked, resulting in incorrect error pages being shown. This vulnerability affects Firefox < 102, Firefox ESR < 91.11, Thunderbird < 102, and Thunderbird < 91.11. | 2025年4月20日 |
产品 | 包 | 状态 |
---|---|---|
KY3.4-5A | thunderbird | Unaffected |
KY3.5.3 | thunderbird | Unaffected |
V6 | thunderbird | Unaffected |