gpp_maybe
Security update for mozillafirefox
SUSE-SLES-16.0-1056
This update for MozillaFirefox fixes the following issue Update to Firefox 140.12.0 ESR (MFSA 2026-58, bsc#1268071): - CVE-2026-12289: Privilege escalation in the Graphics: WebRender component. - CVE-2026-12290: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12291: Use-after-free in the Networking: HTTP component. - CVE-2026-12292: Incorrect boundary conditions in the Web Audio component. - CVE-2026-12294: Sandbox escape in the DOM: Workers component. - CVE-2026-12295: Sandbox escape in the DOM: Navigation component. - CVE-2026-12296: Sandbox escape in the Security: Process Sandboxing component. - CVE-2026-12297: Sandbox escape due to incorrect boundary conditions in the Networking component. - CVE-2026-12298: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12299: JIT miscompilation in the DOM: Core & HTML component. - CVE-2026-12302: Mitigation bypass in the DOM: Security component. - CVE-2026-12304: Same-origin policy bypass in the Networking: Cookies component. - CVE-2026-12305: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12306: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12307: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12308: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12309: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12310: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12311: Information disclosure, sandbox escape in the Security: Process Sandboxing component. - CVE-2026-12312: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12313: Information disclosure, sandbox escape in the Security: Process Sandboxing component. - CVE-2026-12314: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12315: Mitigation bypass in the DOM: Security component. - CVE-2026-12324: Incorrect boundary conditions in the Graphics: CanvasWebGL component. - CVE-2026-12325: Denial-of-service in the Graphics: ImageLib component. - CVE-2026-12327: Memory safety bugs fixed in Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152. - CVE-2026-12328: Memory safety bugs fixed in Firefox ESR 115.37, Firefox ESR 140.12, Thunderbird ESR 140.12, Firefox 152 and Thunderbird 152. - CVE-2026-12329: Memory safety bug fixed in Firefox ESR 140.12. - CVE-2026-12330: Incorrect boundary conditions in the Internationalization component.
-
Release DateJun 24 2026
-
ReferencesBugzilla: 1268071
CVEs: CVE-2026-12289, CVE-2026-12290, CVE-2026-12291, CVE-2026-12292, CVE-2026-12294, CVE-2026-12295, CVE-2026-12296, CVE-2026-12297, CVE-2026-12298, CVE-2026-12299, CVE-2026-12302, CVE-2026-12304, CVE-2026-12305, CVE-2026-12306, CVE-2026-12307, CVE-2026-12308, CVE-2026-12309, CVE-2026-12310, CVE-2026-12311, CVE-2026-12312, CVE-2026-12313, CVE-2026-12314, CVE-2026-12315, CVE-2026-12324, CVE-2026-12325, CVE-2026-12327, CVE-2026-12328, CVE-2026-12329, CVE-2026-12330 -
Typesecurity
-
Severityimportant
cloud_download Downloads
SUSE Linux Enterprise Server 16.0 ppc64le
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-devel140.12.0-160000.1.1 lock rpm
Devel package for FirefoxMozillaFirefox-translations-common140.12.0-160000.1.1 lock rpm
Common translations for FirefoxMozillaFirefox-translations-other140.12.0-160000.1.1 lock rpm
Extra translations for Firefox140.12.0-160000.1.1 lock rpm
SUSE Linux Enterprise Server 16.0 x86_64
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-devel140.12.0-160000.1.1 lock rpm
Devel package for FirefoxMozillaFirefox-translations-common140.12.0-160000.1.1 lock rpm
Common translations for FirefoxMozillaFirefox-translations-other140.12.0-160000.1.1 lock rpm
Extra translations for Firefox140.12.0-160000.1.1 lock rpm
SUSE Linux Enterprise Server for SAP applications 16.0 ppc64le
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-devel140.12.0-160000.1.1 lock rpm
Devel package for FirefoxMozillaFirefox-translations-common140.12.0-160000.1.1 lock rpm
Common translations for FirefoxMozillaFirefox-translations-other140.12.0-160000.1.1 lock rpm
Extra translations for Firefox140.12.0-160000.1.1 lock rpm
SUSE Linux Enterprise Server for SAP applications 16.0 x86_64
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-devel140.12.0-160000.1.1 lock rpm
Devel package for FirefoxMozillaFirefox-translations-common140.12.0-160000.1.1 lock rpm
Common translations for FirefoxMozillaFirefox-translations-other140.12.0-160000.1.1 lock rpm
Extra translations for Firefox140.12.0-160000.1.1 lock rpm
SUSE Linux Enterprise Server 16.0 s390x
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-devel140.12.0-160000.1.1 lock rpm
Devel package for FirefoxMozillaFirefox-translations-common140.12.0-160000.1.1 lock rpm
Common translations for FirefoxMozillaFirefox-translations-other140.12.0-160000.1.1 lock rpm
Extra translations for Firefox140.12.0-160000.1.1 lock rpm
SUSE Linux Enterprise Server 16.0 aarch64
-
PackagesMozillaFirefox
Mozilla Firefox Web BrowserMozillaFirefox-devel140.12.0-160000.1.1 lock rpm
Devel package for FirefoxMozillaFirefox-translations-common140.12.0-160000.1.1 lock rpm
Common translations for FirefoxMozillaFirefox-translations-other140.12.0-160000.1.1 lock rpm
Extra translations for Firefox140.12.0-160000.1.1 lock rpm