VYPR

rpm package

opensuse/mozilla-nspr&distro=openSUSE Leap 16.0

pkg:rpm/opensuse/mozilla-nspr&distro=openSUSE%20Leap%2016.0

Vulnerabilities (115)

  • CVE-2026-16384HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Information disclosure due to uninitialized memory in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

  • CVE-2026-16383CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

  • CVE-2026-16382CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Mitigation bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

  • CVE-2026-16381CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Same-origin policy bypass in the Networking: DNS component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

  • CVE-2026-16380CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Mitigation bypass in the Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

  • CVE-2026-16379HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

  • CVE-2026-16378HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Other issue in the DOM: Copy & Paste and Drag & Drop component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

  • CVE-2026-16377CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Mitigation bypass in the PDF Viewer component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

  • CVE-2026-16376HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Denial-of-service in the Graphics: WebGPU component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

  • CVE-2026-16375CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Site isolation issue in the Networking: HTTP component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

  • CVE-2026-16374HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

  • CVE-2026-16373HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Information disclosure in the Privacy component in Firefox for Android. This vulnerability was fixed in Firefox 153.

  • CVE-2026-16372HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Privilege escalation in the DOM: Content Processes component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

  • CVE-2026-16371HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, Thunderbird 140.13, Firefox ESR 140.15, and Thunderbird 140.15.

  • CVE-2026-16370CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Mitigation bypass in the DOM: Networking component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

  • CVE-2026-16369CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Integer overflow in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

  • CVE-2026-16368CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153, Firefox ESR 140.13, Thunderbird 153, and Thunderbird 140.13.

  • CVE-2026-16367CriJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

  • CVE-2026-16366HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153 and Thunderbird 153.

  • CVE-2026-16365HigJul 21, 2026
    affected < 4.39-160000.1.1fixed 4.39-160000.1.1

    Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153, Thunderbird 153, Firefox ESR 140.15, and Thunderbird 140.15.

Page 5 of 6