REDHAT-BUG-2460097: Medium severity Mozilla Firefox vulnerability
Published Apr 21, 2026
·Updated
Incorrect boundary conditions in the Libraries component in NSS. This vulnerability was fixed in Firefox 150 and Firefox ESR 140.10.
Affected Software
3 affected components
Mozilla Firefox<150
Mozilla Firefox ESR<140.10
Mozilla NSS
Event History
Apr 21, 2026
Data Sourced
via Red Hat·02:02 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2460097?
REDHAT-BUG-2460097 is considered a critical vulnerability due to its potential impact on the security of affected software.
2
How do I fix REDHAT-BUG-2460097?
To fix REDHAT-BUG-2460097, upgrade to Mozilla Firefox version 150 or Mozilla Firefox ESR version 140.10 or later.
3
Which software is affected by REDHAT-BUG-2460097?
REDHAT-BUG-2460097 affects Mozilla Firefox versions prior to 150, Mozilla Firefox ESR versions prior to 140.10, and the NSS library.
4
What are the consequences of not addressing REDHAT-BUG-2460097?
Not addressing REDHAT-BUG-2460097 could lead to exploitation, enabling an attacker to execute arbitrary code or compromise system security.
5
When was REDHAT-BUG-2460097 fixed?
REDHAT-BUG-2460097 was fixed in Firefox version 150 and Firefox ESR version 140.10.