Security News

Cybersecurity news aggregator

🦊
INFO Updates Red Hat Errata

RHSA-2026:24983: Important: firefox security update

  • What: Security update for Firefox
  • Impact: Fixes memory safety bugs and WebRTC issues
Read Full Article →

Red Hat Product Errata RHSA-2026:24983 - Security Advisory Issued: 2026-06-10 Updated: 2026-06-10 RHSA-2026:24983 - Security Advisory Overview Updated Packages Synopsis Important: firefox security update Type/Severity Security Advisory: Important Red Hat Lightspeed patch analysis Identify and remediate systems affected by this advisory. View affected systems Topic An update for firefox is now available for Red Hat Enterprise Linux 7 Extended Lifecycle Support. Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. Description Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability. Security Fix(es): firefox: Other issue in the WebRTC component (CVE-2026-8094) firefox: Memory safety bugs fixed in Firefox ESR 115.35.2, Firefox ESR 140.10.2 and Firefox 150.0.2 (CVE-2026-8092) firefox: Use-after-free in the DOM: Networking component (CVE-2026-8090) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section. Solution For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 Affected Products Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 x86_64 Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 s390x Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 ppc64 Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 ppc64le Fixes BZ - 2467706 - CVE-2026-8094 firefox: thunderbird: Other issue in the WebRTC component BZ - 2467708 - CVE-2026-8092 firefox: Memory safety bugs fixed in Firefox ESR 115.35.2, Firefox ESR 140.10.2 and Firefox 150.0.2 BZ - 2467709 - CVE-2026-8090 firefox: thunderbird: Use-after-free in the DOM: Networking component CVEs CVE-2026-8090 CVE-2026-8092 CVE-2026-8094 References https://access.redhat.com/security/updates/classification/#important Note: More recent versions of these packages may be available. Click a package name for more details. Red Hat Enterprise Linux Server - Extended Life Cycle Support 7 SRPM firefox-140.10.2-1.el7_9.src.rpm SHA-256: bce541141daa69be2946cf013549f39bd26b2767ea2490c0945f7afb5bb1219d x86_64 firefox-140.10.2-1.el7_9.x86_64.rpm SHA-256: 08ab23a6e47683c06c10969d93f4bdbdc73f592f6786b833548e4e04b07220b6 Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) 7 SRPM firefox-140.10.2-1.el7_9.src.rpm SHA-256: bce541141daa69be2946cf013549f39bd26b2767ea2490c0945f7afb5bb1219d s390x firefox-140.10.2-1.el7_9.s390x.rpm SHA-256: 2e91697be2095dfb5bfacd13e54e4d340236b7ee9776f5a302604f30a934ed9a firefox-debuginfo-140.10.2-1.el7_9.s390x.rpm SHA-256: 4ea39e7a790bbef35b9297a30c3ef3b1cfb9caf397540b65e83e65b4c71dd871 Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian 7 SRPM firefox-140.10.2-1.el7_9.src.rpm SHA-256: bce541141daa69be2946cf013549f39bd26b2767ea2490c0945f7afb5bb1219d ppc64 firefox-140.10.2-1.el7_9.ppc64.rpm SHA-256: 49e820ac6147ac700631ee33017f33480ac94969322174157b92d84d7d78e212 firefox-debuginfo-140.10.2-1.el7_9.ppc64.rpm SHA-256: 4d312c2345e4420457fdb00fba6a84ee3c574bb7f0f0c1b418af8d7b06599811 Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian 7 SRPM firefox-140.10.2-1.el7_9.src.rpm SHA-256: bce541141daa69be2946cf013549f39bd26b2767ea2490c0945f7afb5bb1219d ppc64le firefox-140.10.2-1.el7_9.ppc64le.rpm SHA-256: 8b93ad38ae6aa7073e1bbe66d1064c9fc25ad421e962ea92fb1b7334d7712c2e firefox-debuginfo-140.10.2-1.el7_9.ppc64le.rpm SHA-256: 51be3bd77a91c28253077fa07a84ce4b76c9dc4123fe383c24e41d807fa8b6fd The Red Hat security contact is secalert@redhat.com . More contact details at https://access.redhat.com/security/team/contact/ .

Share this article