REDHAT-BUG-2460075: Use After Free
Published Apr 21, 2026
·Updated
Use-after-free in the JavaScript Engine component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, and Firefox ESR 140.10.
Affected Software
3 affected components
Mozilla Firefox<150
Mozilla Firefox ESR (115)<115.35
Mozilla Firefox ESR (140)<140.10
Event History
Apr 21, 2026
Data Sourced
via Red Hat·02:01 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2460075?
REDHAT-BUG-2460075 is classified as a critical vulnerability due to the potential for exploitation.
2
How do I fix REDHAT-BUG-2460075?
To fix REDHAT-BUG-2460075, upgrade to Firefox version 150 or later, or to Firefox ESR version 115.35 or 140.10.
3
What software is affected by REDHAT-BUG-2460075?
Affected software includes Firefox versions prior to 150 and Firefox ESR versions prior to 115.35 and 140.10.
4
What impact does REDHAT-BUG-2460075 have on users?
The impact of REDHAT-BUG-2460075 may allow attackers to execute arbitrary code on the user’s system through a use-after-free vulnerability.
5
Is there a workaround for REDHAT-BUG-2460075?
There are no known workarounds for REDHAT-BUG-2460075, and users are advised to update to a fixed version.