Opened 4 months ago

Closed 2 months ago

#23453 closed enhancement (fixed)

firefox-140.12.0esr and js-140.12.0 (spidermonkey)

Reported by: Joe Locash Owned by: SecurityAdvisory
Priority: high Milestone: 98-Security
Component: BOOK Version: git
Severity: medium Keywords:
Cc:

Description

Security fixes for 140.12.0esr:

  • CVE-2026-12289: Privilege escalation in the Graphics: WebRender component (high)
  • CVE-2026-12290: Memory safety bug fixed in Firefox ESR 140.12 (high)
  • CVE-2026-12291: Use-after-free in the Networking: HTTP component (high)
  • CVE-2026-12292: Incorrect boundary conditions in the Web Audio component (high)
  • CVE-2026-12294: Sandbox escape in the DOM: Workers component (high)
  • CVE-2026-12295: Sandbox escape in the DOM: Navigation component (high)
  • CVE-2026-12298: Memory safety bug fixed in Firefox ESR 140.12 (high)
  • CVE-2026-12296: Sandbox escape in the Security: Process Sandboxing component (high)
  • CVE-2026-12297: Sandbox escape due to incorrect boundary conditions in the Networking component (high)
  • CVE-2026-12299: JIT miscompilation in the DOM: Core & HTML component (high)
  • CVE-2026-12329: Memory safety bug fixed in Firefox ESR 140.12 (high)
  • CVE-2026-12302: Mitigation bypass in the DOM: Security component (moderate)
  • CVE-2026-12304: Same-origin policy bypass in the Networking: Cookies component (moderate)
  • CVE-2026-12305: Memory safety bug fixed in Firefox ESR 140.12 (moderate)
  • CVE-2026-12306: Memory safety bug fixed in Firefox ESR 140.12 (moderate)
  • CVE-2026-12307: Memory safety bug fixed in Firefox ESR 140.12 (moderate)
  • CVE-2026-12308: Memory safety bug fixed in Firefox ESR 140.12 (moderate)
  • CVE-2026-12309: Memory safety bug fixed in Firefox ESR 140.12 (moderate)
  • CVE-2026-12310: Memory safety bug fixed in Firefox ESR 140.12 (moderate)
  • CVE-2026-12311: Information disclosure, sandbox escape in the Security: Process Sandboxing component (moderate)
  • CVE-2026-12312: Memory safety bug fixed in Firefox ESR 140.12 (moderate)
  • CVE-2026-12313: Information disclosure, sandbox escape in the Security: Process Sandboxing component (moderate)
  • CVE-2026-12314: Memory safety bug fixed in Firefox ESR 140.12 (moderate)
  • CVE-2026-12315: Mitigation bypass in the DOM: Security component (moderate)
  • CVE-2026-12330: Incorrect boundary conditions in the Internationalization component (moderate)
  • CVE-2026-12324: Incorrect boundary conditions in the Graphics: CanvasWebGL component (low)
  • CVE-2026-12325: Denial-of-service in the Graphics: ImageLib component (low)
  • CVE-2026-12327: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 (moderate)
  • CVE-2026-12328: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152 (high)

​https://www.mozilla.org/en-US/security/advisories/mfsa2026-58/

Change History (4)

comment:1 by Joe Locash, 4 months ago

Owner: changed from blfs-book to Joe Locash
Status: new → assigned

comment:2 by Joe Locash, 4 months ago

Owner: changed from Joe Locash to SecurityAdvisory
Status: assigned → new

Fixed at d915ba1998. Leaving open for SA.

comment:3 by Bruce Dubbs, 3 months ago

Milestone: 13.1 → 98-Security

comment:4 by Bruce Dubbs, 2 months ago

Resolution: → fixed
Status: new → closed

sa-13.0-141 has been issued.

Note: See TracTickets for help on using tickets.