REDHAT-BUG-2517840: Use After Free
Published Aug 18, 2026
·Updated
Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, and Firefox ESR 153.1.
Affected Software
1 affected component
Mozilla Firefox<154, >=140.0<=140.13, >=153.0<=153.0
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Mozilla Firefoxto a version that resolves this vulnerability.Fixed in 154 - Upgrade
Upgrade
Mozilla Firefox ESRto a version that resolves this vulnerability.Fixed in 140.14 - Upgrade
Upgrade
Mozilla Firefox ESRto a version that resolves this vulnerability.Fixed in 153.1
Event History
Aug 18, 2026
Data Sourced
via Red Hat·12:52 PM
DescriptionSeverityAffected Software