Vulnerability CVE-2025-1932: Information
Description
An inconsistent comparator in xslt/txNodeSorter could have resulted in potentially exploitable out-of-bounds access. Only affected version 122 and later. This vulnerability affects Firefox < 136, Firefox ESR < 128.8, Thunderbird < 136, and Thunderbird < 128.8.
Fixed packages
Package name | Branch | Fixed in version | Version from repository | Errata ID | Task # | State |
---|---|---|---|---|---|---|
firefox | sisyphus | 136.0-alt1 | 136.0.2-alt1 | ALT-PU-2025-4104-2 | 376916 | Fixed |
firefox | sisyphus_loongarch64 | 136.0.1-alt0.port | 136.0.1-alt0.port | ALT-PU-2025-4467-1 | - | Fixed |
firefox | p11 | 136.0.2-alt1 | 135.0.1-alt1 | ALT-PU-2025-4567-1 | 378599 | Testing |
firefox-esr | sisyphus | 128.8.0-alt1 | 128.8.0-alt1 | ALT-PU-2025-3846-2 | 376894 | Fixed |
firefox-esr | p11 | 128.8.0-alt1 | 128.8.0-alt1 | ALT-PU-2025-3905-3 | 377017 | Fixed |
thunderbird | sisyphus | 128.8.0-alt1 | 136.0-alt1 | ALT-PU-2025-3967-2 | 377184 | Fixed |
thunderbird | sisyphus_riscv64 | 128.8.0-alt1 | 136.0-alt1 | ALT-PU-2025-4019-1 | - | Fixed |
thunderbird | sisyphus_loongarch64 | 136.0-alt1 | 136.0-alt1 | ALT-PU-2025-4395-1 | - | Fixed |
thunderbird | p11 | 128.8.0-alt1 | 128.8.0-alt1 | ALT-PU-2025-4001-3 | 377410 | Fixed |