PT-2026-91968 · Mozilla+1 · Thunderbird+2
CVSS v3.1
9.6
Critical
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Firefox versions prior to 156
Firefox ESR versions prior to 140.16
Firefox ESR versions prior to 153.3
Thunderbird versions prior to 156
Thunderbird versions prior to 140.16
Thunderbird versions prior to 153.3
Description
A sandbox escape is possible due to an invalid pointer within the Graphics component. A sandbox is a security mechanism used to isolate running applications from the rest of the system to prevent malicious code from accessing sensitive data or resources.
Recommendations
Update to version 156
Update to version 140.16
Update to version 153.3
Update to version 156
Update to version 140.16
Update to version 153.3
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Firefox
Rocky Linux
Thunderbird