Bug 2479840 (CVE-2026-8975)
| Summary: | CVE-2026-8975 firefox: Memory safety bugs fixed in Firefox ESR 115.36, Firefox ESR 140.11 and Firefox 151 | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security <prodsec-ir-bot> |
| Status: | NEW --- | QA Contact: | |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | unspecified | CC: | gotiwari, jgrulich, jhorak, mvyas, rhel-process-autobot, tpopela, watson-tool-maintainers |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in Firefox. The Mozilla Foundation's Security Advisory describes the following issue:
Memory safety bugs present in Firefox ESR 115.35, Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
OSIDB Bzimport
2026-05-19 14:01:45 UTC
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:21382 https://access.redhat.com/errata/RHSA-2026:21382 This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:21380 https://access.redhat.com/errata/RHSA-2026:21380 This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:21381 https://access.redhat.com/errata/RHSA-2026:21381 This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:21378 https://access.redhat.com/errata/RHSA-2026:21378 This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:22325 https://access.redhat.com/errata/RHSA-2026:22325 This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:22643 https://access.redhat.com/errata/RHSA-2026:22643 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions Via RHSA-2026:26174 https://access.redhat.com/errata/RHSA-2026:26174 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:26269 https://access.redhat.com/errata/RHSA-2026:26269 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:26270 https://access.redhat.com/errata/RHSA-2026:26270 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:26268 https://access.redhat.com/errata/RHSA-2026:26268 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:26491 https://access.redhat.com/errata/RHSA-2026:26491 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions Via RHSA-2026:26493 https://access.redhat.com/errata/RHSA-2026:26493 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:26492 https://access.redhat.com/errata/RHSA-2026:26492 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:26521 https://access.redhat.com/errata/RHSA-2026:26521 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On Via RHSA-2026:26536 https://access.redhat.com/errata/RHSA-2026:26536 This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:26539 https://access.redhat.com/errata/RHSA-2026:26539 This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2026:26551 https://access.redhat.com/errata/RHSA-2026:26551 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On Via RHSA-2026:26606 https://access.redhat.com/errata/RHSA-2026:26606 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:26629 https://access.redhat.com/errata/RHSA-2026:26629 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:26630 https://access.redhat.com/errata/RHSA-2026:26630 This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:27715 https://access.redhat.com/errata/RHSA-2026:27715 |