PT-2025-14103 · Mozilla+11 · Thunderbird+14

Ivan Fratric

·

Published

2025-04-01

·

Updated

2025-07-22

·

CVE-2025-3028

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 137 Firefox ESR versions prior to 115.22 Firefox ESR versions prior to 128.9 Thunderbird versions prior to 137 Thunderbird versions prior to 128.9
Description The issue is related to a use-after-free error in the XSLTProcessor when executing JavaScript code while transforming a document. This could allow a remote attacker to compromise a vulnerable system. The estimated number of potentially affected devices worldwide is not provided. There is no information about real-world incidents where this issue was exploited.
Recommendations For Firefox versions prior to 137, update to version 137 or later. For Firefox ESR versions prior to 115.22, update to version 115.22 or later. For Firefox ESR versions prior to 128.9, update to version 128.9 or later. For Thunderbird versions prior to 137, update to version 137 or later. For Thunderbird versions prior to 128.9, update to version 128.9 or later. As a temporary workaround, consider disabling the XSLTProcessor until a patch is available. Restrict access to the XSLTProcessor to minimize the risk of exploitation. Avoid using the XSLTProcessor in the affected API endpoints until the issue is resolved.

Exploit

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025:3556
ALSA-2025:3582
ALSA-2025:4169
ALSA-2025:4170
ALT-PU-2025-5137
ALT-PU-2025-5843
ALT-PU-2025-6353
ALT-PU-2025-7022
ALT-PU-2025-7695
ALT-PU-2025-7697
BDU:2025-05195
CESA-2025_3582
CESA-2025_4170
CVE-2025-3028
DLA-4109-1
DLA-4110-1
DSA-5889-1
DSA-5891-1
INFSA-2025_3556
INFSA-2025_3582
INFSA-2025_4169
INFSA-2025_4170
MGASA-2025-0125
MGASA-2025-0126
OESA-2025-1418
OESA-2025-1419
OESA-2025-1420
OESA-2025-1421
OESA-2025-1835
OPENSUSE-SU-2025:14961-1
OPENSUSE-SU-2025:14966-1
OPENSUSE-SU-2025:14971-1
OPENSUSE-SU-2025:14975-1
OPENSUSE-SU-2025_1138-1
OPENSUSE-SU-2025_1157-1
RHSA-2025:3556
RHSA-2025:3581
RHSA-2025:3582
RHSA-2025:3587
RHSA-2025:3589
RHSA-2025:3590
RHSA-2025:3620
RHSA-2025:3621
RHSA-2025:3623
RHSA-2025:3628
RHSA-2025:4026
RHSA-2025:4027
RHSA-2025:4028
RHSA-2025:4029
RHSA-2025:4030
RHSA-2025:4031
RHSA-2025:4032
RHSA-2025:4169
RHSA-2025:4170
RHSA-2025:7491
RHSA-2025:7493
RHSA-2025_3556
RHSA-2025_3582
RHSA-2025_4169
RHSA-2025_4170
SUSE-SU-2025:1103-1
SUSE-SU-2025:1138-1
SUSE-SU-2025:1157-1
SUSE-SU-2025_1103-1
SUSE-SU-2025_1138-1
USN-7663-1

Affected Products

Alt Linux
Almalinux
Astra Linux
Centos
Debian
Firefox
Firefox Esr
Linuxmint
Red Hat
Red Os
Rocky Linux
Suse
Thunderbird
Thunderbird Esr
Ubuntu