CVE-2025-8028

CRITICAL

Firefox < 115.26.0, 115.26-115.*, 128.13-128.*, >=140.1 <140.*, >=141 - Memory Corruption via WASM br_table Instruction

Title source: llm
STIX 2.1

Description

On arm64, a WASM `br_table` instruction with a lot of entries could lead to the label being too far from the instruction causing truncation and incorrect computation of the branch address. This vulnerability was fixed in Firefox 141, Firefox ESR 115.26, Firefox ESR 128.13, Firefox ESR 140.1, Thunderbird 141, Thunderbird 128.13, and Thunderbird 140.1.

Scores

CVSS v3 9.8
EPSS 0.0078
EPSS Percentile 73.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact total

Details

CWE
CWE-1332
Status published
Products (11)
mozilla/firefox < 115.26.0
mozilla/firefox < 141.0
Mozilla/Firefox 115.26 - 115.*
Mozilla/Firefox 128.13 - 128.*
Mozilla/Firefox 140.1 - 140.*
Mozilla/Firefox 141
mozilla/thunderbird < 128.13.0
mozilla/thunderbird < 141.0
Mozilla/Thunderbird 128.13 - 128.*
Mozilla/Thunderbird 140.1 - 140.*
... and 1 more
Published Jul 22, 2025
Tracked Since Feb 18, 2026