CVE-2025-5262

Published May 27, 2025

Last updated 2 months ago

Overview

Description
Rejected reason: This CVE was accidentally assigned by Mozilla but should be assigned by another CNA. When the correct CVE is available, Mozilla's advisories will be updated to reflect that identifier.
Source
security@mozilla.org
NVD status
Rejected

Social media

Hype score
Not currently trending
  1. URGENT: Patch Thunderbird NOW! CVE-2025-5262 (CVSS 7.5) lets attackers crash systems remotely. Also fixes payment card leaks (CVE-2025-5267). Read more:👉 https://t.co/qH1UU7wFHC #InfoSec #PatchTuesday https://t.co/7IlMROBZdn

    @Cezar_H_Linux

    15 Jun 2025

    80 Impressions

    1 Retweet

    2 Likes

    1 Bookmark

    0 Replies

    0 Quotes

  2. Mozilla patched a critical Firefox vulnerability (CVE-2025-5262) that allowed attackers to execute arbitrary code via WebRTC. Users should update to version 139 immediately. https://t.co/MbCWWGrxfd

    @Teemu_Tiainen

    31 May 2025

    68 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Mozilla releases urgent updates for Firefox to fix a critical libvpx vulnerability (CVE-2025-5262) allowing remote code execution without user interaction. Update now! https://t.co/MnGEReHFA0 #Security #Vulnerability #Patch #Browser #Safety #Mozilla #Internet #Web #Software https

    @dailytechonx

    28 May 2025

    6 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  4. 🚨 ¡ALERTA DE SEGURIDAD URGENTE PARA USUARIOS DE FIREFOX! 🚨 Mozilla ha lanzado actualizaciones de emergencia para corregir una vulnerabilidad crítica (CVE-2025-5262) en Firefox.  #nextcom #ciberseguridad #firefox https://t.co/5w4lWoD6d9

    @nextcomsystems

    28 May 2025

    42 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  5. ⚠️Actualizaciones de seguridad para los productos de Mozilla ❗CVE-2025-5262 ➡️Más info: https://t.co/uvs6X9FSik https://t.co/z7OkfI6Iko

    @CERTpy

    28 May 2025

    121 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  6. 🚨 Emergency Firefox Update Alert A 0-click vulnerability (CVE-2025-5262) in libvpx lets attackers run arbitrary code without any user interaction. 🔥Patch it now: Mozilla just pushed urgent security updates. 🧵Details: A double-free bug in VP8/VP9 handling via WebRTC.

    @techcoolg

    28 May 2025

    11 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  7. CVE-2025-5262 ... -> vpx_codec_enc_init_multi() -> vp8e_init() fails -> vpx_codec_destroy(ctx) frees buffer -> init-loop error-handler frees buffer again -> caller vpx_codec_destroy(ctx) frees yet again -> double-free https://t.co/qHAVKLGzgu

    @xvonfers

    27 May 2025

    1821 Impressions

    0 Retweets

    6 Likes

    2 Bookmarks

    0 Replies

    1 Quote

  8. CVE-2025-5262 A double-free could have occurred in `vpx_codec_enc_init_multi` after a failed allocation when initializing the encoder for WebRTC. This could have caused memory corrup… https://t.co/VZsDR3o5ZO

    @CVEnew

    27 May 2025

    460 Impressions

    0 Retweets

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

References

Sources include official advisories and independent security research.