CNNVD-202511-1176 Information

CNNVD ID

CNNVD-202511-1176

CVE-2025-13020

  • CNNVD Published: 2025-11-11

Description (Chinese)

Mozilla Firefox和Mozilla Firefox ESR都是美国Mozilla基金会的产品。Mozilla Firefox是一款开源Web浏览器。Mozilla Firefox ESR是Firefox(Web浏览器)的一个延长支持版本。 Mozilla Firefox 145之前版本和Mozilla Firefox ESR 140.5之前版本存在安全漏洞,该漏洞源于WebRTC Audio/Video组件存在释放后重用问题。

Description (English)

Mozilla Firefox and Mozilla Firefox ESR are products of the Mozilla Foundation in the United States. Mozilla Firefox is an open-source Web browser. Mozilla Firefox ESR is an extended support version of Firefox (Web Browser). Prior to Mozilla Firefox 145 and prior to Mozilla Firefox ESR 1405, there was a security loophole, which stemmed from the post-release reuse of the WebRTC Auto/Video component.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Mozilla

Published

2025-11-11

Last Modified

2026-02-24

References

https://www.mozilla.org/security/advisories/mfsa2025-87/ https://www.mozilla.org/security/advisories/mfsa2025-88/ https://www.mozilla.org/security/advisories/mfsa2025-90/ https://bugzilla.mozilla.org/show_bug.cgi?id=1995686 https://www.mozilla.org/security/advisories/mfsa2025-91/ https://access.redhat.com/security/cve/cve-2025-13020

Patch

https://www.firefox.com/

Share on: