Mozilla Product Security Update Advisory

Mozilla Product Security Update Advisory

Overview

 

Mozilla has released security updates that address vulnerabilities in its products. Users of affected products are advised to update to the latest version.

 

 

Affected Products

 

CVE-2026-3845, CVE-2026-3847

 

Firefox versions: 148.0.2 and earlier

 

 

Resolved Vulnerabilities

 

Heap buffer overflow vulnerability in the Audio/Video: Playback component of Firefox for Android (CVE-2026-3845)
Memory safety vulnerability in Firefox (CVE-2026-3847)

 

 

Vulnerability Patches

 

Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest version of Vulnerability Patches.

 

CVE-2026-3845, CVE-2026-3847

 

Firefox version: 148.0.2

 

 

References

 

[1] Mozilla Foundation Security Advisory 2026-19
https://www.mozilla.org/en-US/security/advisories/mfsa2026-19/