CVE-2025-10533
Integer overflow in the SVG component
Vexday Risk Score
21Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS 8.8EPSS 0.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
16 set 2025Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
Integer overflow in the SVG component. This vulnerability was fixed in Firefox 143, Firefox ESR 115.28, Firefox ESR 140.3, Thunderbird 143, and Thunderbird 140.3.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Quer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://bugzilla.mozilla.org/show_bug.cgi?id=1980788https://lists.debian.org/debian-lts-announce/2025/09/msg00026.htmlhttps://www.mozilla.org/security/advisories/mfsa2025-73/https://www.mozilla.org/security/advisories/mfsa2025-74/https://www.mozilla.org/security/advisories/mfsa2025-75/https://www.mozilla.org/security/advisories/mfsa2025-77/https://www.mozilla.org/security/advisories/mfsa2025-78/