References https://nvd.nist.gov/vuln/detail/CVE-2025-4085 https://www.mozilla.org/en-US/security/advisories/mfsa2025-31/ https://www.sentinelone.com/vulnerability-database/CVE-2025-4085/ https://www.cvedetails.com/cve/CVE-2025-4085/ https://ubuntu.com/security/CVE-2025-4085 https://explore.alas.aws.amazon.com/CVE-2025-4085.html https://vuldb.com/vuln/306538 https://www.suse.com/security/CVE-2025-4085.html https://cert.kenet.or.ke/CVE-2025-4085-firefox-uitour-actor-privilege-escalation https://www.tenable.com/plugins/nessus/249406
Related Vulnerabilities(CVE-2025-4087)Firefox和Thunderbird XPath解析空值检查不足导致内存损坏漏洞(CVE-2025-4082)macOS版Firefox和Thunderbird WebGL着色器越界读取漏洞可导致权限提升(CVE-2025-3034)Firefox和Thunderbird内存安全漏洞可导致任意代码执行Mozilla Firefox、Firefox ESR和Thunderbird 远程代码执行漏洞Mozilla Firefox/Thunderbird远程代码执行漏洞Mozilla Firefox/Thunderbird/SeaMonkey \'Array.reduceRight()\'整数溢出漏洞Mozilla Firefox/Thunderbird/SeaMonkey \'Array.reduceRight()\'远程代码执行漏洞