When accessing throttled streams, the count of available bytes needed to be checked in the calling function to be within bounds. This may have lead future code to be incorrect and vulnerable. This vulnerability affects Firefox < 111, Firefox ESR < 102.9, and Thunderbird < 102.9.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published: 2023-06-02T00:00:00

Updated: 2024-08-02T11:32:12.593Z

Reserved: 2023-02-13T00:00:00

Link: CVE-2023-25752

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-06-02T17:15:11.990

Modified: 2023-06-09T18:40:27.807

Link: CVE-2023-25752

cve-icon Redhat

Severity : Moderate

Publid Date: 2023-03-14T00:00:00Z

Links: CVE-2023-25752 - Bugzilla