Mozilla Firefox Sandbox Escape Vulnerability Due to Integer Overflow in the Graphics Component

Vulnerability

A sandbox escape vulnerability has been identified in Mozilla Firefox. This issue arises from an integer overflow in the Graphics component, leading to incorrect boundary conditions. The vulnerability is present in Firefox versions prior to 147, as well as in Firefox ESR versions prior to 115.32 and 140.7.

Impact

Exploitation of this vulnerability allows for a sandbox escape, potentially leading to unauthorized access or actions within a more privileged context.

Remediation

Users can upgrade to Firefox 147 or Firefox ESR 115.32 or 140.7 to address this vulnerability.

Added: Jan 13, 2026, 2:33 PM
Updated: Jan 13, 2026, 9:34 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
2.5
exploitability
4.4
remediation
7.7
relevance
2.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.