CVE-2025-0241

Executive Summary

CVE-2025-0241 is a memory corruption flaw triggered by specially crafted text during segmentation in Mozilla products. The bug can cause a crash, potentially enabling exploitation. It was fixed in Firefox 134 / ESR 128.6 and Thunderbird 134 / 128.6. The vulnerability is not currently listed in the CISA KEV database.


Authoritative CVE Metadata - CVSS Base Score: 7.7 (HIGH) - Published: 2025-01-07T16:15:38.767 - Last Modified: 2026-10-05T15:10:00.590

Original Description: When segmenting specially crafted text, segmentation would corrupt memory leading to a potentially exploitable crash. This vulnerability was fixed in Firefox 134, Firefox ESR 128.6, Thunderbird 134, and Thunderbird 128.6.

"Slow down and everything you are chasing will come around and catch you."

— John De Paola
Source: NVD