REDHAT-BUG-2489235: High severity Mozilla Firefox vulnerability
Sandbox escape due to incorrect boundary conditions in the Networking component. This vulnerability was fixed in Firefox 152, Firefox ESR 140.12, and Firefox ESR 115.37.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
firefoxto a version that resolves this vulnerability.Fixed in 152 - Upgrade
Upgrade
firefox-esrto a version that resolves this vulnerability.Fixed in 140.12 - Upgrade
Upgrade
firefox-esrto a version that resolves this vulnerability.Fixed in 115.37
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2489235?
The severity of REDHAT-BUG-2489235 is high, rated at 7.
What is the description of REDHAT-BUG-2489235?
REDHAT-BUG-2489235 describes a sandbox escape due to incorrect boundary conditions in the Networking component.
How do I fix REDHAT-BUG-2489235?
To fix REDHAT-BUG-2489235, update to Firefox 152, Firefox ESR 140.12, or Firefox ESR 115.37.
Which software is affected by REDHAT-BUG-2489235?
The affected software includes Mozilla Firefox, Mozilla Firefox ESR 140, and Mozilla Firefox ESR 115.
When was REDHAT-BUG-2489235 published?
REDHAT-BUG-2489235 was published on June 16, 2026.