FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Mozilla -- privilege escalation attack

Affected packages
firefox < 137.0,2
librewolf < 137.0
thunderbird < 137.0

Details

VuXML ID 315f568e-13c8-11f0-a5bd-b42e991fc52e
Discovery 2025-04-01
Entry 2025-04-07

security@mozilla.org reports:

Leaking of file descriptors from the fork server to web content processes could allow for privilege escalation attacks.

References

CVE Name CVE-2025-3032
URL https://nvd.nist.gov/vuln/detail/CVE-2025-3032