Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-8953

Опубликовано: 19 мая 2026
Источник: debian

Описание

Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed151.0-1package
firefox-esrfixed140.11.0esr-1package
thunderbirdfixed1:140.11.0esr-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-46/#CVE-2026-8953

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-48/#CVE-2026-8953

  • https://www.mozilla.org/en-US/security/advisories/mfsa2026-51/#CVE-2026-8953

Связанные уязвимости

CVSS3: 9.6
ubuntu
4 месяца назад

Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.

CVSS3: 6.1
redhat
4 месяца назад

Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.

CVSS3: 9.6
nvd
4 месяца назад

Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.

CVSS3: 9.6
github
4 месяца назад

Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, and Firefox ESR 140.11.

CVSS3: 9.6
fstec
4 месяца назад

Уязвимость компонента Disability Access APIs веб-браузеров Firefox и Firefox ESR, почтового клиента Thunderbird, позволяющая нарушителю вызвать отказ в обслуживании