Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, Thunderbird 140.10.1, and Firefox ESR 115.35.2.
History

Thu, 07 May 2026 20:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-126
CWE-787

Thu, 07 May 2026 18:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-119
CWE-127

Thu, 07 May 2026 16:30:00 +0000

Type Values Removed Values Added
References

Thu, 07 May 2026 16:15:00 +0000

Type Values Removed Values Added
Description Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, and Firefox ESR 115.35.2. Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, Thunderbird 140.10.1, and Firefox ESR 115.35.2.
Weaknesses CWE-119
CWE-127
References

Thu, 07 May 2026 15:30:00 +0000

Type Values Removed Values Added
Description Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox ESR 140.10.2 and Firefox ESR 115.35.2. Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, and Firefox ESR 115.35.2.
References

Thu, 07 May 2026 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Mozilla
Mozilla firefox
Vendors & Products Mozilla
Mozilla firefox

Thu, 07 May 2026 13:00:00 +0000

Type Values Removed Values Added
Description Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox ESR 140.10.2 and Firefox ESR 115.35.2.
Title Incorrect boundary conditions in the Audio/Video: Playback component
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published: 2026-05-07T12:45:05.530Z

Updated: 2026-05-07T15:22:39.614Z

Reserved: 2026-05-07T12:45:05.120Z

Link: CVE-2026-8091

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Undergoing Analysis

Published: 2026-05-07T13:16:14.087

Modified: 2026-05-07T16:16:23.700

Link: CVE-2026-8091

cve-icon Redhat

No data.