ALAS2FIREFOX-2025-043


Amazon Linux 2 Security Advisory: ALAS2FIREFOX-2025-043
Advisory Released Date: 2025-09-29
Advisory Updated Date: 2025-09-29
Severity: Important

Issue Overview:

Sandbox escape due to use-after-free in the Graphics: Canvas2D component.

This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3. (CVE-2025-10527)

Sandbox escape due to undefined behavior, invalid pointer in the Graphics: Canvas2D component.

This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3. (CVE-2025-10528)

Same-origin policy bypass in the Layout component.

This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3. (CVE-2025-10529)

Incorrect boundary conditions in the JavaScript: GC component.

This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3. (CVE-2025-10532)

Integer overflow in the SVG component.

This vulnerability affects Firefox < 143, Firefox ESR < 115.28, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3. (CVE-2025-10533)

Information disclosure in the Networking: Cache component.

This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3. (CVE-2025-10536)

Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3. (CVE-2025-10537)

libexpat in Expat before 2.7.2 allows attackers to trigger large dynamic memory allocations via a small document that is submitted for parsing. (CVE-2025-59375)


Affected Packages:

firefox


Note:

This advisory is applicable to Amazon Linux 2 - Firefox Extra. Visit this page to learn more about Amazon Linux 2 (AL2) Extras and this FAQ section for the difference between AL2 Core and AL2 Extras advisories.


Issue Correction:
Run yum update firefox or yum update --advisory ALAS2FIREFOX-2025-043 to update your system.

New Packages:
aarch64:
    firefox-140.3.0-1.amzn2.0.1.aarch64

src:
    firefox-140.3.0-1.amzn2.0.1.src

x86_64:
    firefox-140.3.0-1.amzn2.0.1.x86_64