PT-2026-41929 · Mozilla+1 · Firefox Esr+3
Andrew Mccreight
+3
·
Published
2026-05-19
·
Updated
2026-06-02
·
CVE-2026-8975
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Thunderbird versions 140.10 through 150
Firefox versions 150 and earlier
Firefox ESR versions 115.35 through 140.10
Description
Memory safety bugs involving memory corruption could allow an attacker to run arbitrary code.
Recommendations
Update Thunderbird to version 151 or 140.11.
Update Firefox to version 151.
Update Firefox ESR to version 115.36 or 140.11.
Fix
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Firefox
Firefox Esr
Rocky Linux
Thunderbird