CVE-2025-1020

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Feb 4, 2025
Updated: Feb 6, 2025
CWE ID 787

Summary

CVE-2025-1020 is a memory safety issue affecting Firefox version 134 and Thunderbird version 134. These bugs, some of which exhibit memory corruption, potentially allow an attacker to execute arbitrary code. The vulnerability poses a risk to users of Firefox below version 135 and Thunderbird below version 135. It's essential to update these applications as soon as possible to mitigate the risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Mozilla Thunderbird
  • Mozilla Firefox

Affected Vendors

  • Mozilla