PT-2025-39983 · Mozilla+1 · Firefox+1

Oskar L

·

Published

2025-09-30

·

Updated

2025-11-17

·

CVE-2025-11152

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L
Name of the Vulnerable Software and Affected Versions Firefox versions prior to 143.0.3
Description The software contains a flaw that can lead to a denial of service. The issue is related to an integer overflow within the Canvas2D component, potentially leading to a sandbox escape.
Recommendations Update to Firefox version 143.0.3 or later.

Fix

DoS

Integer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2025-13476
BDU:2025-12848
CVE-2025-11152
OPENSUSE-SU-2025:15593-1

Affected Products

Alt Linux
Firefox