- cross-posted to:
- [email protected]
- cross-posted to:
- [email protected]
You must log in or # to comment.
Fixed:
https://www.mozilla.org/en-US/security/advisories/mfsa2025-36/#CVE-2025-4920
An attacker was able to perform an out-of-bounds read or write on a JavaScript Promise object.
https://www.mozilla.org/en-US/security/advisories/mfsa2025-36/#CVE-2025-4921
An attacker was able to perform an out-of-bounds read or write on a JavaScript object by confusing array index sizes.
Another reason the rust rewrite would have helped Firefox