{"id":"RHSA-2026:47105","summary":"Red Hat Security Advisory: firefox security update","modified":"2026-07-29T10:19:02.278172563Z","published":"2026-07-29T10:11:38Z","upstream":["CVE-2026-15718","CVE-2026-15719","CVE-2026-16349","CVE-2026-16350","CVE-2026-16351","CVE-2026-16352","CVE-2026-16353","CVE-2026-16354","CVE-2026-16355","CVE-2026-16356","CVE-2026-16357","CVE-2026-16358","CVE-2026-16359","CVE-2026-16360","CVE-2026-16361","CVE-2026-16362","CVE-2026-16363","CVE-2026-16368","CVE-2026-16369","CVE-2026-16371","CVE-2026-16374","CVE-2026-16375","CVE-2026-16377","CVE-2026-16379","CVE-2026-16381","CVE-2026-16383","CVE-2026-16387","CVE-2026-16390","CVE-2026-16391","CVE-2026-16396","CVE-2026-16405","CVE-2026-16412","CVE-2026-56208"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2026:47105"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#important"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2490799"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2499973"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2499974"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503415"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503416"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503420"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503423"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503425"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503430"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503432"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503434"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503439"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503440"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503444"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503451"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503454"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503456"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503463"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503472"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503473"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503485"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503489"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503491"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503497"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503498"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503500"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503501"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503505"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503512"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503513"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503517"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503521"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2503527"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_47105.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-15718"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-15718"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-15718"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-15718"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-15718"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-15719"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-15719"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-15719"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-15719"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-15719"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16349"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16349"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16349"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16349"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16349"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16350"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16350"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16350"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16350"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16350"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16351"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16351"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16351"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16351"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16351"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16352"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16352"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16352"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16352"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16352"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16353"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16353"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16353"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16353"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16353"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16354"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16354"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16354"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16354"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16354"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16355"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16355"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16355"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16355"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16355"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16356"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16356"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16356"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16356"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16356"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16357"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16357"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16357"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16357"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16357"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16358"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16358"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16358"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16358"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16358"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16359"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16359"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16359"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16359"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16359"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16360"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16360"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16360"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16360"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16360"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16361"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16361"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16361"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16361"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16361"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16362"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16362"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16362"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16362"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16362"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16363"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16363"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16363"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16363"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16363"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16368"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16368"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16368"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16368"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16368"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16369"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16369"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16369"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16369"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16369"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16371"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16371"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16371"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16371"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16371"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16374"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16374"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16374"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16374"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16374"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16375"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16375"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16375"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16375"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16375"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16377"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16377"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16377"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16377"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16377"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16379"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16379"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16379"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16379"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16379"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16381"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16381"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16381"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16381"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16381"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16383"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16383"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16383"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16383"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16383"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16387"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16387"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16387"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16387"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16387"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16390"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16390"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16390"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16390"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16390"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16391"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16391"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16391"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16391"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16391"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16396"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16396"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16396"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16396"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16396"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16405"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16405"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16405"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16405"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16405"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-16412"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-16412"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-16412"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-70/#CVE-2026-16412"},{"type":"ARTICLE","url":"https://www.mozilla.org/security/advisories/mfsa2026-72/#CVE-2026-16412"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-56208"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-56208"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-56208"},{"type":"ARTICLE","url":"https://aomedia.googlesource.com/aom/+/243f8ae84b"},{"type":"ARTICLE","url":"https://issues.chromium.org/issues/504317456"}],"affected":[{"package":{"name":"firefox","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/firefox"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:140.13.0-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:47105.json"}},{"package":{"name":"firefox-debuginfo","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/firefox-debuginfo"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:140.13.0-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:47105.json"}},{"package":{"name":"firefox-debugsource","ecosystem":"Red Hat:enterprise_linux:8::appstream","purl":"pkg:rpm/redhat/firefox-debugsource"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:140.13.0-1.el8_10"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:47105.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}