DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2025-0239

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2025-0239

CGA ID

CGA-hrwf-5wxm-58jc

Description

When using Alt-Svc, ALPN did not properly validate certificates when the original server is redirecting to an insecure site. This vulnerability affects Firefox < 134, Firefox ESR < 128.6, Thunderbird < 134, and Thunderbird < 128.6.

References

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images