Mozilla Product Security Update Advisory
Overview
Mozilla has released security updates that address vulnerabilities in its products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2026-3845, CVE-2026-3847
Firefox versions: 148.0.2 and earlier
Resolved Vulnerabilities
Heap buffer overflow vulnerability in the Audio/Video: Playback component of Firefox for Android (CVE-2026-3845)
Memory safety vulnerability in Firefox (CVE-2026-3847)
Vulnerability Patches
Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest version of Vulnerability Patches.
CVE-2026-3845, CVE-2026-3847
Firefox version: 148.0.2
References
[1] Mozilla Foundation Security Advisory 2026-19
https://www.mozilla.org/en-US/security/advisories/mfsa2026-19/