7.5

CVE-2025-9182

Denial-of-service due to out-of-memory in the Graphics: WebRender component

Denial-of-service due to out-of-memory in the Graphics: WebRender component. This vulnerability was fixed in Firefox 142, Firefox ESR 140.2, Thunderbird 142, and Thunderbird 140.2.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mozilla ≫ Firefox SwEdition esr Version < 140.2.0
Mozilla ≫ Firefox SwEdition - Version < 142.0
Mozilla ≫ Thunderbird SwEdition esr Version < 140.2.0
Mozilla ≫ Thunderbird SwEdition - Version < 142.0
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.38% 0.304
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
CISA-ADP 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-400 Uncontrolled Resource Consumption

The product does not properly control the allocation and maintenance of a limited resource.

https://www.mozilla.org/security/advisories/mfsa2025-64/
Vendor Advisory
https://www.mozilla.org/security/advisories/mfsa2025-67/
Vendor Advisory
https://www.mozilla.org/security/advisories/mfsa2025-70/
Vendor Advisory
https://www.mozilla.org/security/advisories/mfsa2025-72/
Vendor Advisory
https://bugzilla.mozilla.org/show_bug.cgi?id=1975837
Issue Tracking
Permissions Required