Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-16361

Опубликовано: 21 июл. 2026
Источник: debian
EPSS Низкий

Описание

Memory safety bugs present in Thunderbird ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox ESR 115.38, Firefox ESR 140.13, and Thunderbird 140.13.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefox-esrfixed140.13.0esr-1package
thunderbirdunfixedpackage

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/#CVE-2026-16361

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-72/#CVE-2026-16361

EPSS

Процентиль: 23%
0.00309
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
10 дней назад

Memory safety bugs present in Thunderbird ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox ESR 115.38, Firefox ESR 140.13, and Thunderbird 140.13.

CVSS3: 7.5
redhat
10 дней назад

Memory safety bugs present in Thunderbird ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox ESR 115.38, Firefox ESR 140.13, and Thunderbird 140.13.

CVSS3: 9.8
nvd
10 дней назад

Memory safety bugs present in Thunderbird ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox ESR 115.38, Firefox ESR 140.13, and Thunderbird 140.13.

CVSS3: 9.8
github
10 дней назад

Memory safety bugs present in Firefox ESR 115.37 and Firefox ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox ESR 115.38 and Firefox ESR 140.13.

suse-cvrf
7 дней назад

Security update for MozillaFirefox

EPSS

Процентиль: 23%
0.00309
Низкий