Memory Safety Vulnerabilities in Firefox and Thunderbird Products
CVE-2025-3030
What is CVE-2025-3030?
Recent investigations have uncovered memory safety bugs in multiple versions of Firefox and Thunderbird, including Firefox 136, Thunderbird 136, Firefox ESR 128.8, and Thunderbird ESR 128.8. These vulnerabilities indicate evidence of memory corruption, raising concerns that under specific conditions, they could be exploited to execute arbitrary code on the affected systems. Users should ensure their software is updated to Firefox 137, Thunderbird 137, Firefox ESR 128.9, or Thunderbird ESR 128.9 to mitigate these risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Firefox < 137
Firefox ESR < 128.9
Thunderbird < 137
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved