Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-0880

Опубликовано: 13 янв. 2026
Источник: debian
EPSS Низкий

Описание

Sandbox escape due to integer overflow in the Graphics component. This vulnerability affects Firefox < 147, Firefox ESR < 115.32, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed147.0-1package
firefox-esrfixed140.7.0esr-1package
thunderbirdfixed1:140.7.0esr-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-01/#CVE-2026-0880

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-03/#CVE-2026-0880

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-05/#CVE-2026-0880

EPSS

Процентиль: 14%
0.00046
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
22 дня назад

Sandbox escape due to integer overflow in the Graphics component. This vulnerability affects Firefox < 147, Firefox ESR < 115.32, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.

CVSS3: 8.8
nvd
22 дня назад

Sandbox escape due to integer overflow in the Graphics component. This vulnerability affects Firefox < 147, Firefox ESR < 115.32, Firefox ESR < 140.7, Thunderbird < 147, and Thunderbird < 140.7.

CVSS3: 8.8
github
22 дня назад

Sandbox escape due to integer overflow in the Graphics component. This vulnerability affects Firefox < 147, Firefox ESR < 115.32, and Firefox ESR < 140.7.

suse-cvrf
20 дней назад

Security update for MozillaFirefox

suse-cvrf
13 дней назад

Security update for MozillaFirefox

EPSS

Процентиль: 14%
0.00046
Низкий