Bug 2503440 (CVE-2026-16361)
| Summary: | CVE-2026-16361 firefox: thunderbird: Memory safety bugs fixed in Firefox ESR 115.38 and Firefox ESR 140.13 | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security <prodsec-ir-bot> |
| Status: | NEW --- | QA Contact: | |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | unspecified | CC: | gotiwari, jhorak, mvyas, rhel-process-autobot, watson-tool-maintainers |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in Firefox and Thunderbird. The Mozilla Foundation's Security Advisory describes the following issue:
Memory safety bugs present in Thunderbird ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
|
Description
OSIDB Bzimport
2026-07-21 13:02:26 UTC
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:47101 https://access.redhat.com/errata/RHSA-2026:47101 This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:47105 https://access.redhat.com/errata/RHSA-2026:47105 This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:47104 https://access.redhat.com/errata/RHSA-2026:47104 This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:49621 https://access.redhat.com/errata/RHSA-2026:49621 This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:49922 https://access.redhat.com/errata/RHSA-2026:49922 This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:49921 https://access.redhat.com/errata/RHSA-2026:49921 This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:53445 https://access.redhat.com/errata/RHSA-2026:53445 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions Via RHSA-2026:53444 https://access.redhat.com/errata/RHSA-2026:53444 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:53446 https://access.redhat.com/errata/RHSA-2026:53446 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:53455 https://access.redhat.com/errata/RHSA-2026:53455 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On Via RHSA-2026:53453 https://access.redhat.com/errata/RHSA-2026:53453 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:53454 https://access.redhat.com/errata/RHSA-2026:53454 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:53475 https://access.redhat.com/errata/RHSA-2026:53475 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:54180 https://access.redhat.com/errata/RHSA-2026:54180 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:54185 https://access.redhat.com/errata/RHSA-2026:54185 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Update Services for SAP Solutions Via RHSA-2026:54182 https://access.redhat.com/errata/RHSA-2026:54182 This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:54181 https://access.redhat.com/errata/RHSA-2026:54181 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On Via RHSA-2026:54259 https://access.redhat.com/errata/RHSA-2026:54259 This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:54249 https://access.redhat.com/errata/RHSA-2026:54249 This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2026:54248 https://access.redhat.com/errata/RHSA-2026:54248 This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:54339 https://access.redhat.com/errata/RHSA-2026:54339 |