<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 17:14:47 +0000</lastBuildDate>
    <item>
      <title>ALSA-2022:9065 — Important: firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2022:9065</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: firefox&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.&lt;/p&gt;
&lt;p&gt;This update upgrades Firefox to version 102.6.0 ESR.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* Mozilla: Arbitrary file read from a compromised content process (CVE-2022-46872)
* Mozilla: Memory safety bugs fixed in Firefox ESR 102.6 and Thunderbird 102.6 (CVE-2022-46878)
* Mozilla: Use-after-free in WebGL (CVE-2022-46880)
* Mozilla: Memory corruption in WebGL (CVE-2022-46881)
* Mozilla: Drag and Dropped Filenames could have been truncated to malicious extensions (CVE-2022-46874)
* Mozilla: Use-after-free in WebGL (CVE-2022-46882)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:9: firefox&lt;/p&gt;
&lt;p&gt;Mozilla Firefox is an open-source web browser, designed for standards compliance, performance, and portability.&lt;/p&gt;
&lt;p&gt;This update upgrades Firefox to version 102.6.0 ESR.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* Mozilla: Arbitrary file read from a compromised content process (CVE-2022-46872)
* Mozilla: Memory safety bugs fixed in Firefox ESR 102.6 and Thunderbird 102.6 (CVE-2022-46878)
* Mozilla: Use-after-free in WebGL (CVE-2022-46880)
* Mozilla: Memory corruption in WebGL (CVE-2022-46881)
* Mozilla: Drag and Dropped Filenames could have been truncated to malicious extensions (CVE-2022-46874)
* Mozilla: Use-after-free in WebGL (CVE-2022-46882)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2022:9065</guid>
    </item>
    <item>
      <title>bdu:2023-00074</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-00074</link>
      <description>bdu:2023-00074</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-00074</guid>
    </item>
    <item>
      <title>certfr-2022-avi-1095 — De multiples vulnérabilités ont été découvertes dans les produits
Mozilla. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-1095</link>
      <description>certfr-2022-avi-1095</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-1095</guid>
    </item>
    <item>
      <title>cnvd-2025-18675</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2025-18675</link>
      <description>cnvd-2025-18675</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2025-18675</guid>
    </item>
    <item>
      <title>EUVD-2026-229783</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-229783</link>
      <description>EUVD-2026-229783</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-229783</guid>
    </item>
    <item>
      <title>fkie_cve-2022-46872</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2022-46872</link>
      <description>&lt;p&gt;An attacker who compromised a content process could have partially escaped the sandbox to read arbitrary files via clipboard-related IPC messages.&amp;lt;br&amp;gt;*This bug only affects Thunderbird for Linux. Other operating systems are unaffected.*. This vulnerability affects Firefox &amp;lt; 108, Firefox ESR &amp;lt; 102.6, and Thunderbird &amp;lt; 102.6.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An attacker who compromised a content process could have partially escaped the sandbox to read arbitrary files via clipboard-related IPC messages.&amp;lt;br&amp;gt;*This bug only affects Thunderbird for Linux. Other operating systems are unaffected.*. This vulnerability affects Firefox &amp;lt; 108, Firefox ESR &amp;lt; 102.6, and Thunderbird &amp;lt; 102.6.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2022-46872</guid>
    </item>
    <item>
      <title>GHSA-w696-j5x3-hhvj</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-w696-j5x3-hhvj</link>
      <description>&lt;p&gt;An attacker who compromised a content process could have partially escaped the sandbox to read arbitrary files via clipboard-related IPC messages.&amp;lt;br&amp;gt;*This bug only affects Thunderbird for Linux. Other operating systems are unaffected.*. This vulnerability affects Firefox &amp;lt; 108, Firefox ESR &amp;lt; 102.6, and Thunderbird &amp;lt; 102.6.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An attacker who compromised a content process could have partially escaped the sandbox to read arbitrary files via clipboard-related IPC messages.&amp;lt;br&amp;gt;*This bug only affects Thunderbird for Linux. Other operating systems are unaffected.*. This vulnerability affects Firefox &amp;lt; 108, Firefox ESR &amp;lt; 102.6, and Thunderbird &amp;lt; 102.6.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-w696-j5x3-hhvj</guid>
    </item>
    <item>
      <title>gsd-2022-46872</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2022-46872</link>
      <description>gsd-2022-46872</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2022-46872</guid>
    </item>
    <item>
      <title>openSUSE-SU-2024:12568-1 — libmozjs-102-0-102.6.0-1.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2024:12568-1</link>
      <description>&lt;p&gt;libmozjs-102-0-102.6.0-1.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libmozjs-102-0-102.6.0-1.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2024:12568-1</guid>
    </item>
    <item>
      <title>RHSA-2022:9066 — Red Hat Security Advisory: firefox security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:9066</link>
      <description>&lt;p&gt;Mozilla: Arbitrary file read from a compromised content process Mozilla: Drag and Dropped Filenames could have been truncated to malicious extensions Mozilla: Memory safety bugs fixed in Firefox ESR 102.6 and Thunderbird 102.6 Mozilla: Use-after-free in WebGL Mozilla: Memory corruption in WebGL Mozilla: Use-after-free in WebGL&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Mozilla: Arbitrary file read from a compromised content process Mozilla: Drag and Dropped Filenames could have been truncated to malicious extensions Mozilla: Memory safety bugs fixed in Firefox ESR 102.6 and Thunderbird 102.6 Mozilla: Use-after-free in WebGL Mozilla: Memory corruption in WebGL Mozilla: Use-after-free in WebGL&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:9066</guid>
    </item>
    <item>
      <title>SUSE-SU-2022:4460-1 — Security update for MozillaFirefox</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2022:4460-1</link>
      <description>&lt;p&gt;Security update for MozillaFirefox&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for MozillaFirefox&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2022:4460-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2022-46872</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-46872</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: firefox, Ubuntu:18.04:LTS: thunderbird, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: thunderbird, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52, Ubuntu:22.04:LTS: mozjs78, Ubuntu:22.04:LTS: mozjs91 and 1 more&lt;/p&gt;
&lt;p&gt;An attacker who compromised a content process could have partially escaped the sandbox to read arbitrary files via clipboard-related IPC messages.&amp;lt;br&amp;gt;*This bug only affects Thunderbird for Linux. Other operating systems are unaffected.*. This vulnerability affects Firefox &amp;lt; 108, Firefox ESR &amp;lt; 102.6, and Thunderbird &amp;lt; 102.6.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:18.04:LTS: firefox, Ubuntu:18.04:LTS: thunderbird, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: thunderbird, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52, Ubuntu:22.04:LTS: mozjs78, Ubuntu:22.04:LTS: mozjs91 and 1 more&lt;/p&gt;
&lt;p&gt;An attacker who compromised a content process could have partially escaped the sandbox to read arbitrary files via clipboard-related IPC messages.&amp;lt;br&amp;gt;*This bug only affects Thunderbird for Linux. Other operating systems are unaffected.*. This vulnerability affects Firefox &amp;lt; 108, Firefox ESR &amp;lt; 102.6, and Thunderbird &amp;lt; 102.6.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2022-46872</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-2319 — Mozilla Firefox und Thunderbird: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2319</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR und Mozilla Thunderbird ausnutzen, um beliebigen Code auszuführen, den Benutzer zu täuschen, Informationen offenzulegen, einen Denial of Service Zustand herbeizuführen und nicht näher beschriebene Auswirkungen zu erzielen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Mozilla Firefox, Mozilla Firefox ESR und Mozilla Thunderbird ausnutzen, um beliebigen Code auszuführen, den Benutzer zu täuschen, Informationen offenzulegen, einen Denial of Service Zustand herbeizuführen und nicht näher beschriebene Auswirkungen zu erzielen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-2319</guid>
    </item>
  </channel>
</rss>
