Описание
Security update for MozillaFirefox
This update for MozillaFirefox fixes the following issues:
Update to Firefox Extended Support Release 153.3.0 ESR (MFSA 2026-93, bsc#1280371):
- CVE-2026-92005: Use-after-free in the Audio/Video: Web Codecs component.
- CVE-2026-92006: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component.
- CVE-2026-92007: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component.
- CVE-2026-92008: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component.
- CVE-2026-92009: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component.
- CVE-2026-92010: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component.
- CVE-2026-92011: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component.
- CVE-2026-92012: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component.
- CVE-2026-92013: Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component.
- CVE-2026-92015: Privilege escalation in the WebExtensions component.
- CVE-2026-92016: Use-after-free in the Disability Access APIs component.
- CVE-2026-92017: Privilege escalation in the DOM: Service Workers component.
- CVE-2026-92018: Sandbox escape in the DOM: Core & HTML component.
- CVE-2026-92019: Mitigation bypass in the Remote Settings Client component.
- CVE-2026-92020: Privilege escalation due to incorrect boundary conditions in the Graphics: WebRender component.
- CVE-2026-92022: Use-after-free in the DOM: HTML Parser component.
- CVE-2026-92023: Use-after-free in the XML component.
- CVE-2026-92024: Use-after-free in the SVG component.
- CVE-2026-92025: Use-after-free in the DOM: Navigation component.
- CVE-2026-92026: Use-after-free in the Networking component.
- CVE-2026-92027: Use-after-free in the DOM: Streams component.
- CVE-2026-92028: Use-after-free in the DOM: Core & HTML component.
- CVE-2026-92029: Use-after-free in the SVG component.
- CVE-2026-92030: Mitigation bypass in the DOM: Copy & Paste and Drag & Drop component.
- CVE-2026-92031: Information disclosure in the Graphics: ImageLib component.
- CVE-2026-92032: Sandbox escape due to invalid pointer in the Graphics component.
- CVE-2026-92035: Sandbox escape due to incorrect boundary conditions in the Graphics component.
- CVE-2026-92038: Mitigation bypass in the Remote Settings Client component.
- CVE-2026-92039: Mitigation bypass in the DOM: Notifications component.
- CVE-2026-92041: Mitigation bypass in the DOM: Networking component.
- CVE-2026-92042: Race condition in the DOM: Content Processes component.
- CVE-2026-92043: Privilege escalation due to incorrect boundary conditions in the Audio/Video component.
- CVE-2026-92044: Information disclosure in the Networking: HTTP component.
- CVE-2026-92045: Sandbox escape due to incorrect boundary conditions in the WebRTC component.
- CVE-2026-92046: Use-after-free in the Graphics component.
- CVE-2026-92047: Privilege escalation in the Crash Reporting component.
- CVE-2026-92048: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component.
- CVE-2026-92049: Use-after-free in the Widget: Win32 component.
- CVE-2026-92052: Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component.
- CVE-2026-92053: Privilege escalation in the Graphics: CanvasWebGL component.
- CVE-2026-92054: Privilege escalation in the Memory component.
- CVE-2026-92055: Privilege escalation in the DevTools component.
- CVE-2026-92056: Use-after-free in the Graphics: Text component.
- CVE-2026-92057: Mitigation bypass in the Enterprise Policies component.
- CVE-2026-92058: Use-after-free in the Graphics component.
- CVE-2026-92059: Incorrect boundary conditions in the DOM: Editor component.
- CVE-2026-92060: Use-after-free in the Internationalization component.
- CVE-2026-92062: Privilege escalation in the Session Restore component.
- CVE-2026-92064: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component.
- CVE-2026-92065: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component.
- CVE-2026-92067: Use-after-free in the Widget: Gtk component.
- CVE-2026-92068: Site isolation issue in the Reader Mode component.
- CVE-2026-92069: Spoofing issue in the DOM: Navigation component.
- CVE-2026-92070: Information disclosure in the Networking component.
- CVE-2026-92071: Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component.
- CVE-2026-92072: Incorrect boundary conditions in the Safe Browsing component.
- CVE-2026-92073: Privilege escalation in the Enterprise Policies component.
- CVE-2026-92074: Mitigation bypass in the Popup Blocker component.
- CVE-2026-92075: Mitigation bypass in the Networking component.
- CVE-2026-92076: Incorrect boundary conditions in the Networking component.
- CVE-2026-92077: Denial-of-service in the SVG component.
- CVE-2026-92078: Denial-of-service in the Security component.
- CVE-2026-92079: Mitigation bypass in the Widget: Win32 component.
Список пакетов
openSUSE Leap 16.0
Ссылки
- SUSE Security Ratings
- SUSE Bug 1280371
- SUSE CVE CVE-2026-92005 page
- SUSE CVE CVE-2026-92006 page
- SUSE CVE CVE-2026-92007 page
- SUSE CVE CVE-2026-92008 page
- SUSE CVE CVE-2026-92009 page
- SUSE CVE CVE-2026-92010 page
- SUSE CVE CVE-2026-92011 page
- SUSE CVE CVE-2026-92012 page
- SUSE CVE CVE-2026-92013 page
- SUSE CVE CVE-2026-92015 page
- SUSE CVE CVE-2026-92016 page
- SUSE CVE CVE-2026-92017 page
- SUSE CVE CVE-2026-92018 page
- SUSE CVE CVE-2026-92019 page
- SUSE CVE CVE-2026-92020 page
- SUSE CVE CVE-2026-92022 page
- SUSE CVE CVE-2026-92023 page
- SUSE CVE CVE-2026-92024 page
Описание
Use-after-free in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 156, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92005
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92006
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92007
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92008
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92009
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92010
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92011
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92012
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92013
- SUSE Bug 1280371
Описание
Privilege escalation in the WebExtensions component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92015
- SUSE Bug 1280371
Описание
Use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 156, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92016
- SUSE Bug 1280371
Описание
Privilege escalation in the DOM: Service Workers component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92017
- SUSE Bug 1280371
Описание
Sandbox escape in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92018
- SUSE Bug 1280371
Описание
Mitigation bypass in the Remote Settings Client component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92019
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Graphics: WebRender component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92020
- SUSE Bug 1280371
Описание
Use-after-free in the DOM: HTML Parser component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92022
- SUSE Bug 1280371
Описание
Use-after-free in the XML component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92023
- SUSE Bug 1280371
Описание
Use-after-free in the SVG component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92024
- SUSE Bug 1280371
Описание
Use-after-free in the DOM: Navigation component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92025
- SUSE Bug 1280371
Описание
Use-after-free in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92026
- SUSE Bug 1280371
Описание
Use-after-free in the DOM: Streams component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92027
- SUSE Bug 1280371
Описание
Use-after-free in the DOM: Core & HTML component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92028
- SUSE Bug 1280371
Описание
Use-after-free in the SVG component. This vulnerability was fixed in Firefox 156, Firefox ESR 115.41, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92029
- SUSE Bug 1280371
Описание
Mitigation bypass in the DOM: Copy & Paste and Drag & Drop component. This vulnerability was fixed in Firefox 156, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92030
- SUSE Bug 1280371
Описание
Information disclosure in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 156, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92031
- SUSE Bug 1280371
Описание
Sandbox escape due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 140.16, Firefox ESR 153.3, Thunderbird 156, Thunderbird 140.16, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92032
- SUSE Bug 1280371
Описание
Sandbox escape due to incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92035
- SUSE Bug 1280371
Описание
Mitigation bypass in the Remote Settings Client component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92038
- SUSE Bug 1280371
Описание
Mitigation bypass in the DOM: Notifications component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92039
- SUSE Bug 1280371
Описание
Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92041
- SUSE Bug 1280371
Описание
Race condition in the DOM: Content Processes component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92042
- SUSE Bug 1280371
Описание
Privilege escalation due to incorrect boundary conditions in the Audio/Video component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92043
- SUSE Bug 1280371
Описание
Information disclosure in the Networking: HTTP component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92044
- SUSE Bug 1280371
Описание
Sandbox escape due to incorrect boundary conditions in the WebRTC component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92045
- SUSE Bug 1280371
Описание
Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92046
- SUSE Bug 1280371
Описание
Privilege escalation in the Crash Reporting component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92047
- SUSE Bug 1280371
Описание
Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92048
- SUSE Bug 1280371
Описание
Use-after-free in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92049
- SUSE Bug 1280371
Описание
Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92052
- SUSE Bug 1280371
Описание
Privilege escalation in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92053
- SUSE Bug 1280371
Описание
Privilege escalation in the Memory component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92054
- SUSE Bug 1280371
Описание
Privilege escalation in the DevTools component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92055
- SUSE Bug 1280371
Описание
Use-after-free in the Graphics: Text component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92056
- SUSE Bug 1280371
Описание
Mitigation bypass in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92057
- SUSE Bug 1280371
Описание
Use-after-free in the Graphics component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92058
- SUSE Bug 1280371
Описание
Incorrect boundary conditions in the DOM: Editor component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92059
- SUSE Bug 1280371
Описание
Use-after-free in the Internationalization component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92060
- SUSE Bug 1280371
Описание
Privilege escalation in the Session Restore component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92062
- SUSE Bug 1280371
Описание
Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92064
- SUSE Bug 1280371
Описание
Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92065
- SUSE Bug 1280371
Описание
Use-after-free in the Widget: Gtk component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92067
- SUSE Bug 1280371
Описание
Site isolation issue in the Reader Mode component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92068
- SUSE Bug 1280371
Описание
Spoofing issue in the DOM: Navigation component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92069
- SUSE Bug 1280371
Описание
Information disclosure in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92070
- SUSE Bug 1280371
Описание
Sandbox escape due to incorrect boundary conditions in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92071
- SUSE Bug 1280371
Описание
Incorrect boundary conditions in the Safe Browsing component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92072
- SUSE Bug 1280371
Описание
Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92073
- SUSE Bug 1280371
Описание
Mitigation bypass in the Popup Blocker component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92074
- SUSE Bug 1280371
Описание
Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92075
- SUSE Bug 1280371
Описание
Incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92076
- SUSE Bug 1280371
Описание
Denial-of-service in the SVG component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92077
- SUSE Bug 1280371
Описание
Denial-of-service in the Security component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92078
- SUSE Bug 1280371
Описание
Mitigation bypass in the Widget: Win32 component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.
Затронутые продукты
Ссылки
- CVE-2026-92079
- SUSE Bug 1280371