CVE-2025-9179 Information

Description

An attacker was able to perform memory corruption in the GMP process which processes encrypted media. This process is also heavily sandboxed but represents slightly different privileges from the content process. This vulnerability affects Firefox < 142 Firefox ESR < 115.27 Firefox ESR < 128.14 Firefox ESR < 140.2 Thunderbird < 142 Thunderbird < 128.14 and Thunderbird < 140.2.

Reference

https://bugzilla.mozilla.org/show_bug.cgi?id=1979527 https://www.mozilla.org/security/advisories/mfsa2025-64/ https://www.mozilla.org/security/advisories/mfsa2025-65/ https://www.mozilla.org/security/advisories/mfsa2025-66/ https://www.mozilla.org/security/advisories/mfsa2025-67/ https://www.mozilla.org/security/advisories/mfsa2025-70/ https://www.mozilla.org/security/advisories/mfsa2025-71/ https://www.mozilla.org/security/advisories/mfsa2025-72/

CNNVD-202508-2236 (Published: 2025-08-19)

Share on: