Mozilla Firefox and Thunderbird Memory Safety Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A vulnerability has been identified in Mozilla Firefox and Thunderbird due to memory safety issues. This vulnerability is present in Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143, and Thunderbird 143. Some of these memory safety bugs showed signs of memory corruption, leading to the presumption that they could be exploited to execute arbitrary code with sufficient effort.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution.

Remediation

Users can upgrade to Firefox 144, Firefox ESR 140.4, Thunderbird 144, or Thunderbird ESR 140.4 to address this vulnerability.

Added: Oct 14, 2025, 1:27 PM
Updated: Oct 14, 2025, 11:41 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
0.7
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.