CVE-2025-1930 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

On Windows, a compromised content process could use bad StreamData sent over AudioIPC to trigger a use-after-free in the Browser process. This could have led to…
High CVSS: 8.8

CVE-2025-1930

On Windows, a compromised content process could use bad StreamData sent over AudioIPC to trigger a use-after-free in the Browser process. This could have led to a sandbox escape. This vulnerability affects Firefox < 136, Firefox ESR < 115.21, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8.
Vendor
Mozilla
Product
Firefox
CWE
CWE-416
Yayın Tarihi
2025-03-04 14:15:37
Güncelleme
2025-04-04 15:16:09
Source Identifier
security@mozilla.org
KEV Date Added
-

Kategoriler

Referanslar