CVE-2025-1009 Information
Feb 06, 2025
cve
Description
An attacker could have caused a use-after-free via crafted XSLT data leading to a potentially exploitable crash. This vulnerability affects Firefox < 135 Firefox ESR < 115.20 Firefox ESR < 128.7 Thunderbird < 128.7 and Thunderbird < 135.
Reference
https://bugzilla.mozilla.org/show_bug.cgi?id=1936613 https://www.mozilla.org/security/advisories/mfsa2025-07/ https://www.mozilla.org/security/advisories/mfsa2025-08/ https://www.mozilla.org/security/advisories/mfsa2025-09/ https://www.mozilla.org/security/advisories/mfsa2025-10/ https://www.mozilla.org/security/advisories/mfsa2025-11/
Share on: