Description
Sandbox escape due to use-after-free in the Disability Access APIs component. This vulnerability was fixed in Firefox 151, Firefox ESR 115.36, Firefox ESR 140.11, Thunderbird 151, and Thunderbird 140.11.
Product status
140.11 (rpm)
151 (rpm)
151 (rpm)
Credits
stevej
References
bugzilla.mozilla.org/show_bug.cgi?id=2029511
www.mozilla.org/security/advisories/mfsa2026-46/
www.mozilla.org/security/advisories/mfsa2026-47/
www.mozilla.org/security/advisories/mfsa2026-48/
www.mozilla.org/security/advisories/mfsa2026-50/
www.mozilla.org/security/advisories/mfsa2026-51/