CVE-2023-25747: Mozilla Firefox Mobile

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

A potential use-after-free in libaudio was fixed by disabling the AAudio backend when running on Android API below version 30. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox for Android < 110.1.0.

Affected products

  • Mozilla Firefox Mobile: before 110.1 (fixed in 110.1)

Published 2023-06-19. Last modified 2026-08-19.