FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Mozilla -- Sandbox escape

Affected packages
firefox < 146.0.0,2
firefox-esr < 140.6
Thunderbird < 146.0.0

Details

VuXML ID 9a9d50a6-d6a8-11f0-8e1b-b42e991fc52e
Discovery 2025-12-09
Entry 2025-12-11

https://bugzilla.mozilla.org/show_bug.cgi?id=1996473 reports:

Sandbox escape due to incorrect boundary conditions in the Graphics: CanvasWebGL component.

References

CVE Name CVE-2025-14322
URL https://cveawg.mitre.org/api/cve/CVE-2025-14322