VDB
CVE-2025-5262
CVE-2025-5262
PUBLISHED
CVSS 9.300000190734863 CRITICAL
Firefox ist ein Open Source Web Browser. ESR ist die Variante mit verlängertem Support. Thunderbird ist ein Open Source E-Mail Client.
EPSS 0.38% · 59.8th percentile
Risk Scores
CVSS 4.0
9.300000190734863
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.38%
59.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Red Hat | Red Hat Enterprise Linux | |
| Oracle | Oracle Linux | |
| Amazon | Amazon Linux 2 | |
| Ubuntu | Ubuntu Linux | |
| SUSE | SUSE openSUSE | |
| Mozilla | Mozilla Thunderbird <128.11 | |
| Mozilla | Mozilla Thunderbird <139 | |
| Mozilla | Mozilla Firefox ESR <115.24 | |
| Fedora | Fedora Linux | |
| Debian | Debian Linux | |
| Mozilla | Mozilla Firefox ESR <128.11 | |
| Mozilla | Mozilla Firefox <139 | |
| SUSE | SUSE Linux |
Exploit Intelligence
- CIRCL seen: CVE-2025-5262 (circl-sighting)
- CIRCL seen: CVE-2025-5262 (circl-sighting)
- CIRCL seen: CVE-2025-5262 (circl-sighting)
- CIRCL seen: CVE-2025-5262 (circl-sighting)
- CIRCL seen: CVE-2025-5262 (circl-sighting)
- https://bugzilla.mozilla.org/show_bug.cgi?id=1962421 (circl)
- https://www.mozilla.org/security/advisories/mfsa2025-45/ (circl)
- https://www.mozilla.org/security/advisories/mfsa2025-46/ (circl)
Timeline
- May 27, 2025 CVE Published
- May 27, 2025 PoC Published
- May 27, 2025 PoC Published
- May 28, 2025 PoC Published
- May 31, 2025 PoC Published
- Jun 1, 2025 PoC Published
- Jun 9, 2025 Coalition ESS Score
- Aug 20, 2025 EPSS Score
- Aug 20, 2025 Coalition ESS Score
- Aug 26, 2025 Coalition ESS Score
- Aug 28, 2025 EPSS Score
- Sep 5, 2025 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2025/wid-sec-w-2025-1160.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2025-1160 advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2025-42/ advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2025-43/ advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2025-44/ advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2025-45/ advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2025-46/ advisory
- https://linux.oracle.com/errata/ELSA-2025-8293.html advisory
- https://access.redhat.com/errata/RHSA-2025:8308 advisory
- https://lists.debian.org/debian-lts-announce/2025/05/msg00043.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2025-5bf1989d48 advisory
- https://security-tracker.debian.org/tracker/DSA-5926-1 advisory
- https://linux.oracle.com/errata/ELSA-2025-8308.html advisory
- https://lists.debian.org/debian-security-announce/2025/msg00089.html advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2025-a52491bdd9 advisory
- https://access.redhat.com/errata/RHSA-2025:8293 advisory
- https://lists.debian.org/debian-lts-announce/2025/05/msg00046.html advisory
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/message/TEMWQQR3WLN7ACI6LZQ7KQO5GLIQ3HLM/ advisory
- https://lists.suse.com/pipermail/sle-security-updates/2025-May/020986.html advisory
- https://access.redhat.com/errata/RHSA-2025:8341 advisory
…and 39 more