FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Mozilla -- stack memory read

Affected packages
firefox < 137.0,2
librewolf < 137.0
thunderbird < 137.0

Details

VuXML ID 2fc74cae-13c8-11f0-a5bd-b42e991fc52e
Discovery 2025-04-01
Entry 2025-04-07

security@mozilla.org reports:

An attacker could read 32 bits of values spilled onto the stack in a JIT compiled function.

References

CVE Name CVE-2025-3031
URL https://nvd.nist.gov/vuln/detail/CVE-2025-3031