CVE-2025-4919
Published May 17, 2025
Last updated 2 days ago
AI description
CVE-2025-4919 is an out-of-bounds access vulnerability found in Firefox. It occurs during the optimization of linear sums, which could allow an attacker to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes. Successful exploitation of this vulnerability could permit an adversary to achieve out-of-bounds read or write, potentially leading to the access of sensitive information or memory corruption, which could pave the way for code execution. This vulnerability affects Firefox ESR versions before 115.23.1 and was credited to Manfred Paul.
- Description
- An attacker was able to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes. This vulnerability affects Firefox < 138.0.4, Firefox ESR < 128.10.1, and Firefox ESR < 115.23.1.
- Source
- security@mozilla.org
- NVD status
- Awaiting Analysis
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
4
๐๐ Firefox: ๐ฐ๐๐๐๐๐๐๐ข ๐ด๐ก๐๐๐๐๐๐๐ ๐๐๐๐-๐ณ๐๐ข ๐ ๐๐๐๐๐๐๐๐๐๐๐๐๐๐ ๐ต๐๐ก๐๐ (CVE-2025-4918 & CVE-2025-4919) ๐๐ #cyber_security_highlights ๐ก
@MahRabie
21 May 2025
8 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
๋ชจ์ง๋ผ, ํ์ด์ดํญ์ค ์ ๋ก๋ฐ์ด ์ทจ์ฝ์ ๊ธด๊ธ ๋ณด์ ์ ๋ฐ์ดํธ ๋ฐํ Pwn2Own ๋ฒ ๋ฅผ๋ฆฐ 2025 ํดํน๋ํ์ ๋ฐ๊ฒฌ๋ ์ทจ์ฝ์ 2๊ฐ ๊ธด๊ธ ๋ณด์ ์ ๋ฐ์ดํธ ์ถ์. CVE-2025-4918 ์๋ฐ์คํฌ๋ฆฝํธ ์์ง์์ ๋ฒ์๋ฅผ ๋ฒ์ด๋ ์ฝ๊ธฐ/์ฐ๊ธฐ ๋ฌธ์ ๋ฐ์. C
@OxBw27B18Xt0Ilz
20 May 2025
12 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
โ ๏ธExplotaciรณn de vulnerabilidades en Mozilla โCVE-2025-4919 โCVE-2025-4918 โก๏ธMรกs info: https://t.co/zajM0tneY3 https://t.co/PXpLq0WfxI
@CERTpy
20 May 2025
116 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
ู ุนุงูุฌุฉ ุซุบุฑุชูู ุฎุทูุฑุชูู ูู #ูุงูุฑูููุณ (Zero-Day) ุจุนุฏ ุงุณุชุบูุงููู ุง ูู ู ุณุงุจูุฉ ุฃู ููุฉ ๐ ุงูุฃููู: CVE-2025-4918 ๐ ุงูุซุงููุฉ: CVE-2025-4919 ๐ธ ุงูู ูุงูุฃุฉ: 100 ุฃูู ุฏููุงุฑ ุฅุฐุง ุชุณุชุฎุฏู ูุงูุฑูู
@cyberscastx
20 May 2025
941 Impressions
2 Retweets
13 Likes
9 Bookmarks
0 Replies
0 Quotes
๐จ ็ทๆฅใขใฉใผใ๏ผFirefoxใฆใผใถใผใฏไปใใใขใใใใผใใ๏ผ Mozillaใ2ใคใฎ้ๅคงใชใผใญใใค่ๅผฑๆงใซๅฏพใใ็ทๆฅใใใใใชใชใผในใใพใใใ ใใใใฎ่ๅผฑๆง๏ผCVE-2025-4918ใCVE-2025-4919๏ผใฏใใงใซๅฎ้ใฎๆปๆใงๆช
@TechTrendsJP
19 May 2025
60 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Mozilla rapidly released security patches for Firefox to fix two critical zero-day vulnerabilities (CVE-2025-4918 & CVE-2025-4919) exposed at Pwn2Own Berlin 2025. Updates protect users from exploitation. #Mozilla #Firefox #Germany ๐ https://t.co/iwHtL3LnMZ
@TweetThreatNews
19 May 2025
17 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
โผ๏ธ Slackware 15.0 Security Patch Alert โผ๏ธ Firefox 128.10.1 ESR fixes CVE-2025-4918 (RCE) & CVE-2025-4919 (Privilege Escalation). Patch immediately! ๐ Download + MD5 checksums: ๐https://t.co/I0EtEAHEV7 #InfoSec #Linux #Firefox https://t.co/dzN80bS07n
@Cezar_H_Linux
19 May 2025
37 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
๐จ Critical Firefox updates are out! Mozilla patched 2 zero-day vulnerabilities (CVE-2025-4918 & CVE-2025-4919) exploited at Pwn2Own Berlin. Update to v138.0.4 ASAP to stay protected! ๐ก๏ธ Read more here: <https://t.co/RB4AFoPb1o> #Firefox #ZeroDay #Cybersecurity
@fernandokarl
19 May 2025
23 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
๐จFirefox: Two 0-Day Vulnerabilities Exploited. -PATCH NOW- Mozilla has patched two critical zero-day vulnerabilities (CVE-2025-4918, CVE-2025-4919) in Firefox exploited at Pwn2Own Berlin. The flaws allow read/write on JavaScript objects, risking data exposure or code https:
@H4ckManac
19 May 2025
12878 Impressions
95 Retweets
163 Likes
25 Bookmarks
2 Replies
4 Quotes
Mozilla patches two critical zero-day vulnerabilities (CVE-2025-4918 & CVE-2025-4919) in Firefox exploited at Pwn2Own Berlin, risking data access and remote code execution. Researchers: Bochin, Yan, & Paul. ๐๐ฉ๐ช #Firefox #ZeroDay #Germany https://t.co/ZZPJIoSBAw
@TweetThreatNews
19 May 2025
40 Impressions
0 Retweets
2 Likes
0 Bookmarks
1 Reply
0 Quotes
๐ 2 critical Firefox zero-days โ CVE-2025-4918 & CVE-2025-4919 โ proven exploitable. Attackers can read/write sensitive data or trigger remote code execution. Affects all versions before: โข Firefox 138.0.4 โข ESR 128.10.1 / 115.23.1 ๐ Patch now. Full story: htt
@TheHackersNews
19 May 2025
32053 Impressions
149 Retweets
272 Likes
60 Bookmarks
6 Replies
11 Quotes
ใFirefoxใใซJavaScriptใฎใชใใธใงใฏใๅฆ็ใซ่ตทๅ ใใๆทฑๅปใช่ๅผฑๆง2ไปถ๏ผCVE-2025-4918ใCVE-2025-4919๏ผใ็บ่ฆใใใใจใฎใใจใ
@atkmywk
19 May 2025
111 Impressions
0 Retweets
2 Likes
0 Bookmarks
1 Reply
0 Quotes
CVE-2025-4919 Firefox ESR Out-of-Bounds Memory Vulnerability Below Version 115.23.1 https://t.co/6tZSS307D5
@VulmonFeeds
17 May 2025
15 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-4919 An attacker was able to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes. This vulnerability affects Firefox ESR < 115.23.1. https://t.co/jFmugYzx0h
@CVEnew
17 May 2025
439 Impressions
0 Retweets
2 Likes
0 Bookmarks
0 Replies
0 Quotes