Memory safety bugs present in Firefox 138, Thunderbird 138, Firefox ESR 128.10, and Thunderbird 128.10. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 139 and Firefox ESR < 128.11.
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:8293 https://access.redhat.com/errata/RHSA-2025:8293
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2025:8308 https://access.redhat.com/errata/RHSA-2025:8308
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:8341 https://access.redhat.com/errata/RHSA-2025:8341
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2025:8598 https://access.redhat.com/errata/RHSA-2025:8598
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2025:8599 https://access.redhat.com/errata/RHSA-2025:8599
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2025:8608 https://access.redhat.com/errata/RHSA-2025:8608
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2025:8607 https://access.redhat.com/errata/RHSA-2025:8607