First published: Tue Mar 04 2025(Updated: )
An inconsistent comparator in xslt/txNodeSorter could have resulted in potentially exploitable out-of-bounds access. Only affected version 122 and later. This vulnerability affects Firefox < 136 and Firefox ESR < 128.8.
Affected Software | Affected Version | How to fix |
---|---|---|
Firefox | <136 | |
Firefox ESR | <128.8 | |
Firefox | >=122 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2349796 is considered potentially exploitable due to out-of-bounds access.
To fix REDHAT-BUG-2349796, upgrade Mozilla Firefox to version 136 or later, or Firefox ESR to version 128.8 or later.
Firefox versions prior to 136 and Firefox ESR versions prior to 128.8 are affected by REDHAT-BUG-2349796.
The vulnerable component in REDHAT-BUG-2349796 is the xslt/txNodeSorter.
Yes, xslt/txNodeSorter version 122 and later are affected by REDHAT-BUG-2349796.