Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 427
Alerts This Week
Warning Icon 1 427

SUSE MozillaFirefox Critical 32 Issues Security Update 2026-3221-1

suse
Calendar Grey July 24, 2026
Scroller Suse
Install the critical MozillaFirefox update available for SUSE to address 32 serious vulnerabilities effectively.
A security update for Mozilla Firefox addresses 32 vulnerabilities, enhancing protection for various SUSE Linux Enterprise products, critical for maintaining system integrity and u...

Summary

## This update for MozillaFirefox fixes the following issue: * Firefox Extended Support Release 140.13.0 ESR (MFSA 2026-70, bsc#1271649): * CVE-2026-15718: Invalid pointer in the JavaScript: WebAssembly component. * CVE-2026-15719: Site isolation issue in the DOM: Navigation component. * CVE-2026-16349: Same-origin policy bypass in the DOM: Navigation component. * CVE-2026-16350: Incorrect boundary conditions in the Audio/Video: cubeb component. * CVE-2026-16351: Sandbox escape due to use-after-free in the DOM: Navigation component. * CVE-2026-16352: Sandbox escape due to use-after-free in the Disability Access APIs component. * CVE-2026-16353: Invalid pointer in the DOM: Bindings (WebIDL) component. * CVE-2026-16354: Information disclosure in the Graphics: ImageLib component.

References

* bsc#1271649

Cross-

* CVE-2026-15718

* CVE-2026-15719

* CVE-2026-16349

* CVE-2026-16350

* CVE-2026-16351

* CVE-2026-16352

* CVE-2026-16353

* CVE-2026-16354

* CVE-2026-16355

* CVE-2026-16356

* CVE-2026-16357

* CVE-2026-16358

* CVE-2026-16359

* CVE-2026-16360

* CVE-2026-16361

* CVE-2026-16362

* CVE-2026-16363

* CVE-2026-16368

* CVE-2026-16369

* CVE-2026-16371

* CVE-2026-16374

* CVE-2026-16375

* CVE-2026-16377

* CVE-2026-16379

* CVE-2026-16381

* CVE-2026-16383

* CVE-2026-16387

* CVE-2026-16390

* CVE-2026-16391

* CVE-2026-16396

* CVE-2026-16405

* CVE-2026-16412

CVSS scores:

* CVE-2026-15718 ( NVD ): 4.3 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

* CVE-2026-15719 ( NVD ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2026:3221-1
Release Date: 2026-07-23T17:39:41Z
Rating: critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.