CVE-2023-25745: High severity firefox vulnerability
Last updated 24 July 2024
Other sources
Memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 110.
— Launchpad
Mozilla developers Timothy Nikkel, Gabriele Svelto, Jeff Muizelaar and the Mozilla Fuzzing Team reported memory safety bugs present in Firefox 109. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2023-25745?
CVE-2023-25745 is a vulnerability that involves memory safety bugs present in Firefox 109.
What is the severity of CVE-2023-25745?
The severity of CVE-2023-25745 is high with a severity value of 7.
Which software is affected by CVE-2023-25745?
Mozilla Firefox versions up to and including 110, Ubuntu Firefox packages up to and including version 110.0-1, and Debian Firefox packages with version 117.0.1-1 are affected by CVE-2023-25745.
How can CVE-2023-25745 be exploited?
CVE-2023-25745 could potentially be exploited to run arbitrary code.
Where can I find more information about CVE-2023-25745?
You can find more information about CVE-2023-25745 at the following references: [Bugzilla](https://bugzilla.mozilla.org/buglist.cgi?bug_id=1688592%2C1797186%2C1804998%2C1806521%2C1813284), [Mozilla Security Advisories](https://www.mozilla.org/security/advisories/mfsa2023-05/), [Launchpad](https://launchpad.net/bugs/cve/CVE-2023-25745).