Opened 2 months ago

Closed 2 months ago

#23632 closed enhancement (fixed)

spidermonkey (js) 140.13.0esr

Reported by: Joe Locash Owned by: SecurityAdvisory
Priority: high Milestone: 98-Security
Component: BOOK Version: git
Severity: critical Keywords:
Cc:

Description

Since we're in a split ff/sm stage lets get this updated since one of the javascript cve's is listed as critical.

Security fixes:

  • CVE-2026-15718: Invalid pointer in the JavaScript: WebAssembly component (critical)
  • CVE-2026-15719: Site isolation issue in the DOM: Navigation component (critical)
  • CVE-2026-16349: Same-origin policy bypass in the DOM: Navigation component (high)
  • CVE-2026-16350: Incorrect boundary conditions in the Audio/Video: cubeb component (high)
  • CVE-2026-16362: Use-after-free in the WebRTC: Audio/Video component (high)
  • CVE-2026-16351: Sandbox escape due to use-after-free in the DOM: Navigation component (high)
  • CVE-2026-16352: Sandbox escape due to use-after-free in the Disability Access APIs component (high)
  • CVE-2026-16363: JIT miscompilation in the JavaScript: WebAssembly component (high)
  • CVE-2026-16353: Invalid pointer in the DOM: Bindings (WebIDL) component (high)
  • CVE-2026-16354: Information disclosure in the Graphics: ImageLib component (high)
  • CVE-2026-16368: Incorrect boundary conditions in the JavaScript: WebAssembly component (high)
  • CVE-2026-16369: Integer overflow in the JavaScript: WebAssembly component (high)
  • CVE-2026-16355: JIT miscompilation in the JavaScript Engine: JIT component (high)
  • CVE-2026-16356: Sandbox escape due to use-after-free in the Disability Access APIs component (high)
  • CVE-2026-16357: Incorrect boundary conditions in the Graphics component (high)
  • CVE-2026-16371: Privilege escalation in the DOM: Navigation component (moderate)
  • CVE-2026-16374: Information disclosure in the Framework component in DevTools (moderate)
  • CVE-2026-16375: Site isolation issue in the Networking: HTTP component (moderate)
  • CVE-2026-16377: Mitigation bypass in the PDF Viewer component (moderate)
  • CVE-2026-16379: Privilege escalation in the DOM: Content Processes component (moderate)
  • CVE-2026-16358: Site isolation issue in the Graphics: WebRender component (moderate)
  • CVE-2026-16381: Same-origin policy bypass in the Networking: DNS component (moderate)
  • CVE-2026-16383: Mitigation bypass in the DOM: Networking component (moderate)
  • CVE-2026-16387: Site isolation issue in the Networking component (moderate)
  • CVE-2026-16390: Mitigation bypass in the Enterprise Policies component (moderate)
  • CVE-2026-16391: Information disclosure in the Storage: IndexedDB component (moderate)
  • CVE-2026-16359: Incorrect boundary conditions in the Audio/Video: GMP component (moderate)
  • CVE-2026-16396: Privilege escalation in WebExtensions (moderate)
  • CVE-2026-16412: Memory safety bugs fixed in Firefox ESR 140.13 and Firefox 153 (high)
  • CVE-2026-16360: Memory safety bugs fixed in Firefox ESR 115.38, Firefox ESR 140.13 and Firefox 153 (high)
  • CVE-2026-16361: Memory safety bugs fixed in Firefox ESR 115.38 and Firefox ESR 140.13 (high)

​https://www.mozilla.org/en-US/security/advisories/mfsa2026-70/

Change History (3)

comment:1 by Joe Locash, 2 months ago

Owner: changed from blfs-book to Joe Locash
Status: new → assigned

comment:2 by Joe Locash, 2 months ago

Milestone: 13.1 → 98-Security
Owner: changed from Joe Locash to SecurityAdvisory
Status: assigned → new

Fixed at eba86f4408. Leaving open for SA.

comment:3 by Bruce Dubbs, 2 months ago

Resolution: → fixed
Status: new → closed

Advisory sa-13.0-181 has been issued.

Note: See TracTickets for help on using tickets.