CVE-2025-9181
19.08.2025, 21:15
Uninitialized memory in the JavaScript Engine component. This vulnerability affects Firefox < 142, Firefox ESR < 128.14, Firefox ESR < 140.2, Thunderbird < 142, Thunderbird < 128.14, and Thunderbird < 140.2.Enginsight
Vendor | Product | Version |
---|---|---|
mozilla | firefox | 𝑥 < 128.14.0 |
mozilla | firefox | 𝑥 < 142.0 |
mozilla | firefox | 140.0 ≤ 𝑥 < 140.2.0 |
mozilla | thunderbird | 𝑥 < 128.14.0 |
mozilla | thunderbird | 𝑥 < 142.0 |
mozilla | thunderbird | 140.0 ≤ 𝑥 < 140.2.0 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
firefox |
| ||||||||||||||||
firefox-esr |
| ||||||||||||||||
thunderbird |
|
Common Weakness Enumeration
Vulnerability Media Exposure
References