CVE-2026-0882
Use-after-free in the IPC component
Vexday Risk Score
21Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS 8.8EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
13 ene 2026Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Use-after-free in the IPC component. This vulnerability was fixed in Firefox 147, Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird 147, and Thunderbird 140.7.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://access.redhat.com/errata/RHSA-2026:0667https://access.redhat.com/errata/RHSA-2026:0694https://access.redhat.com/errata/RHSA-2026:0924https://access.redhat.com/errata/RHSA-2026:1320https://access.redhat.com/errata/RHSA-2026:1413https://access.redhat.com/errata/RHSA-2026:1414https://access.redhat.com/errata/RHSA-2026:1415https://access.redhat.com/errata/RHSA-2026:1461https://access.redhat.com/errata/RHSA-2026:1462https://access.redhat.com/errata/RHSA-2026:1471https://access.redhat.com/errata/RHSA-2026:1487https://access.redhat.com/errata/RHSA-2026:2041