发布于3月6日3月6日 Members MFSA2023-10 Firefox: Security Vulnerabilities fixed in Firefox ESR 102.9 (CVE-2023-25752) Severity 7 CVSS (AV:N/AC:M/Au:N/C:N/I:C/A:N) Published 03/14/2023 Created 03/15/2023 Added 03/15/2023 Modified 01/28/2025 Description When accessing throttled streams, the count of available bytes needed to be checked in the calling function to be within bounds. This may have lead future code to be incorrect and vulnerable. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9. Solution(s) mozilla-firefox-esr-upgrade-102_9 References https://attackerkb.com/topics/cve-2023-25752 CVE - 2023-25752 http://www.mozilla.org/security/announce/2023/mfsa2023-10.html