FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Mozilla -- multiple vulnerabilities

Affected packages
firefox < 147.0.0,2
firefox-esr < 140.7
thunderbird < 147.0.0

Details

VuXML ID 06061c59-f212-11f0-9ca3-b42e991fc52e
Discovery 2026-01-13
Entry 2026-01-15

Incorrect boundary conditions in the Graphics component.

Use-after-free in the IPC component.

Sandbox escape due to integer overflow in the Graphics component.

Sandbox escape due to incorrect boundary conditions in the Graphics component.

Mitigation bypass in the DOM: Security component.

References

CVE Name CVE-2026-0877
CVE Name CVE-2026-0879
CVE Name CVE-2026-0880
CVE Name CVE-2026-0882
CVE Name CVE-2026-0886