Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-1932

Опубликовано: 04 мар. 2025
Источник: debian
EPSS Низкий

Описание

An inconsistent comparator in xslt/txNodeSorter could have resulted in potentially exploitable out-of-bounds access. Only affected version 122 and later. This vulnerability affects Firefox < 136, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed136.0-1package
firefox-esrfixed128.8.0esr-1package
thunderbirdfixed1:128.8.0esr-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2025-14/#CVE-2025-1932

  • https://www.mozilla.org/en-US/security/advisories/mfsa2025-16/#CVE-2025-1932

  • https://www.mozilla.org/en-US/security/advisories/mfsa2025-18/#CVE-2025-1932

  • https://project-zero.issues.chromium.org/issues/392850860

EPSS

Процентиль: 22%
0.00071
Низкий

Связанные уязвимости

CVSS3: 8.1
ubuntu
4 месяца назад

An inconsistent comparator in xslt/txNodeSorter could have resulted in potentially exploitable out-of-bounds access. Only affected version 122 and later. This vulnerability affects Firefox < 136, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8.

CVSS3: 8.3
redhat
4 месяца назад

An inconsistent comparator in xslt/txNodeSorter could have resulted in potentially exploitable out-of-bounds access. Only affected version 122 and later. This vulnerability affects Firefox < 136, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8.

CVSS3: 8.1
nvd
4 месяца назад

An inconsistent comparator in xslt/txNodeSorter could have resulted in potentially exploitable out-of-bounds access. Only affected version 122 and later. This vulnerability affects Firefox < 136, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8.

CVSS3: 9.8
github
4 месяца назад

An inconsistent comparator in xslt/txNodeSorter could have resulted in potentially exploitable out-of-bounds access. Only affected version 122 and later. This vulnerability affects Firefox < 136 and Firefox ESR < 128.8.

CVSS3: 9.8
fstec
4 месяца назад

Уязвимость компонента xslt/txNodeSorter браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, Thunderbird ESR, позволяющая нарушителю оказать влияние на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 22%
0.00071
Низкий