Logo
vulnerabilityCVE-2026-2781
Name
CVE-2026-2781
Source
NVD ( link)Debian ( link)
Description
Integer overflow in the Libraries component in NSS. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, Thunderbird 140.8, and Firefox ESR 115.35.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
nss
Patched

Vulnerability Ratings#


9.8
CVSSv31
8.8
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
openwrt
master
3.125-r1
Not Affected
openwrt
openwrt-25.12
3.112-r1
Not Affected
yocto
kirkstone
3.74
Not Affected
yocto
master
3.125
Not Affected

Resolved with patches#


nss (yocto:scarthgap)

#
Title
Author
Resolve
1
Bug 2009552 - avoid integer overflow in platform-independent
John Schanck <jschanck@mozilla.com>
CVE-2026-2781