Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-4720

Опубликовано: 24 мар. 2026
Источник: debian
EPSS Низкий

Описание

Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed149.0-1package
firefox-esrfixed140.9.0esr-1package
thunderbirdfixed1:140.9.0esr-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-20/#CVE-2026-4720

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-22/#CVE-2026-4720

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-24/#CVE-2026-4720

EPSS

Процентиль: 6%
0.00023
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
14 дней назад

Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.

CVSS3: 7.5
redhat
14 дней назад

Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.

CVSS3: 9.8
nvd
14 дней назад

Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149, Firefox ESR < 140.9, Thunderbird < 149, and Thunderbird < 140.9.

CVSS3: 9.8
github
14 дней назад

Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149 and Firefox ESR < 140.9.

oracle-oval
12 дней назад

ELSA-2026-5932: firefox security update (IMPORTANT)

EPSS

Процентиль: 6%
0.00023
Низкий