CVE-2025-2817

Published Apr 29, 2025

Last updated 13 days ago

Overview

Description
Thunderbird's update mechanism allowed a medium-integrity user process to interfere with the SYSTEM-level updater by manipulating the file-locking behavior. By injecting code into the user-privileged process, an attacker could bypass intended access controls, allowing SYSTEM-level file operations on paths controlled by a non-privileged user and enabling privilege escalation. This vulnerability affects Firefox < 138, Firefox ESR < 128.10, Firefox ESR < 115.23, Thunderbird < 138, and Thunderbird < 128.10.
Source
security@mozilla.org
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Secondary
Base score
8.8
Impact score
5.9
Exploitability score
2.8
Vector string
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity
HIGH

Weaknesses

134c704f-9b21-4f2e-91b3-4a467353bcc0
CWE-22

Social media

Hype score
Not currently trending
  1. Actively exploited CVE : CVE-2025-2817

    @transilienceai

    8 May 2025

    9 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    1 Reply

    0 Quotes

  2. ‼️ #SUSE #Thunderbird users: Patch IMMEDIATELY for CVE-2025-2817 (8.5 CVSS), CVE-2025-4082 (8.7 CVSS), and 5 other critical flaws. Exploits may allow RCE &amp; privilege escalation. 🔗 Patch guide: 👉 https://t.co/BMIO7OXY3U #Suse #security https://t.co/aehfYficWD

    @Cezar_H_Linux

    7 May 2025

    35 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  3. ⚠️Múltiples vulnerabilidades en los productos de Mozilla para Red Hat ❗CVE-2025-4091 ❗CVE-2025-4087 ❗CVE-2025-4083 ❗CVE-2025-2817 ❗CVE-2025-4093 ➡️Más info: https://t.co/xIEj7nBvyC https://t.co/2Yb4UJpdb7

    @CERTpy

    5 May 2025

    83 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. CVE-2025-2817 (CVSS:8.8, HIGH) is Awaiting Analysis. Thunderbird's update mechanism allowed a medium-integrity user process to interfere with the SYSTEM-level updater by man..https://t.co/yMBYSnrJYc #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    @cracbot

    4 May 2025

    27 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. &lt; 웹브라우저로 파이어폭스(FireFox) 쓰시는 분들은 꼭 최신 버전으로 업데이트하세요. 파이어폭스 138버전 업데이트로 패치된 보안취약점들이 많습니다. &gt; CVE-2025-2817: 파이어폭스 업데이터의 권한 상승 영향 :

    @OxBw27B18Xt0Ilz

    3 May 2025

    51 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 🚨 CVE-2025-2817 🔴 HIGH (8.8) 🏢 Mozilla - Firefox 🏗️ unspecified 🔗 https://t.co/lp7UPZVD3i 🔗 https://t.co/yuyk2doLiy 🔗 https://t.co/fbVkXMDf92 🔗 https://t.co/vrvP0t9Ti8 🔗 https://t.co/GLeK4TdtDg 🔗 https://t.co/g489jIx41l #CyberCron #VulnAlert #InfoS

    @cybercronai

    30 Apr 2025

    25 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. ⚠️Actualizaciones de seguridad para los productos de Mozilla ❗CVE-2025-2817 ❗CVE-2025-4092 ❗CVE-2025-4093 ❗CVE-2025-4082 ❗CVE-2025-4083 ➡️Más info: https://t.co/JJi9oHSZKG https://t.co/FTPvTHCUWL

    @CERTpy

    30 Apr 2025

    71 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. CVE-2025-2817 Local Privilege Escalation in Firefox Update Mechanism via File-Locking Manipulation https://t.co/cLamLUaKOb

    @VulmonFeeds

    29 Apr 2025

    26 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

Configurations