Published December 9, 2025
Severity MEDIUM
CNA Score 6.5
Affected Technologies
NixOS
Mozilla Firefox
Has Public Exploit No
Has CISA KEV Exploit No
CISA KEV Release Date N/A
CISA KEV Due Date N/A
Exploitation Probability Percentile (EPSS) 3.2
Exploitation Probability (EPSS) N/A
Affected packages and libraries
Sources
AlmaLinux Security Advisory
AlmaLinux 8 Severity HIGHHas FixAdded at: Dec 12, 2025
AlmaLinux 9 Severity HIGHHas FixAdded at: Dec 12, 2025
Debian Security Tracker
Debian 11, 12, 13 Severity MEDIUMHas FixAdded at: Dec 09, 2025
Debian 14 Severity MEDIUMNo FixAdded at: Dec 09, 2025
Echo
Echo Severity MEDIUMHas FixAdded at: Dec 09, 2025
Homebrew
Homebrew Severity MEDIUMHas FixAdded at: Dec 12, 2025
Nix
Nix Severity MEDIUMHas FixAdded at: Dec 12, 2025
Red Hat Errata
Red Hat 6, 7 Severity MEDIUMNo FixAdded at: Dec 10, 2025
Red Hat 8 Severity MEDIUMHas FixAdded at: Dec 10, 2025
Red Hat 9 Severity MEDIUMHas FixAdded at: Dec 10, 2025
Red Hat 10 Severity MEDIUMHas FixAdded at: Dec 10, 2025
Rocky Linux Product Errata
Rocky 8 Severity HIGHHas FixAdded at: Dec 14, 2025
Rocky 9 Severity HIGHHas FixAdded at: Dec 14, 2025
Rocky 10 Severity HIGHHas FixAdded at: Dec 14, 2025
Ubuntu Security Tracker
Ubuntu 22.04 Severity MEDIUMNo FixAdded at: Dec 11, 2025
VulnCheck NVD++
Linux Severity MEDIUMHas FixAdded at: Dec 10, 2025
Windows Severity MEDIUMHas FixAdded at: Dec 10, 2025
NVD
Linux Severity MEDIUMHas FixAdded at: Dec 12, 2025
Windows Severity MEDIUMHas FixAdded at: Dec 12, 2025