REDHAT-BUG-2479846: Low severity Mozilla Firefox vulnerability
Published May 19, 2026
·Updated
Denial-of-service due to invalid pointer in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 151 and Firefox ESR 140.11.
Affected Software
2 affected components
Mozilla Firefox<151
Mozilla Firefox ESR<140.11
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in Firefox 151 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in Firefox ESR 140.11
Event History
May 19, 2026
Data Sourced
via Red Hat·02:02 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2479846?
The severity of REDHAT-BUG-2479846 is low.
2
How do I fix REDHAT-BUG-2479846?
To fix REDHAT-BUG-2479846, update to Firefox 151 or Firefox ESR 140.11.
3
What is the risk associated with REDHAT-BUG-2479846?
The risk associated with REDHAT-BUG-2479846 is a denial-of-service due to an invalid pointer.
4
Which versions of Firefox were affected by REDHAT-BUG-2479846?
Firefox and Firefox ESR versions prior to 151 and 140.11 respectively were affected by REDHAT-BUG-2479846.
5
When was REDHAT-BUG-2479846 published?
REDHAT-BUG-2479846 was published on May 19, 2026.