rpm package
opensuse/rust-cbindgen&distro=openSUSE Leap 16.0
pkg:rpm/opensuse/rust-cbindgen&distro=openSUSE%20Leap%2016.0
Vulnerabilities (115)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-74967 | Med | 5.4 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74966 | Hig | 7.5 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74965 | Hig | 8.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74964 | Cri | 9.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74963 | Med | 5.4 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74962 | Hig | 8.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74961 | Cri | 9.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Side-channel in the Web Audio component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74960 | Hig | 8.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Site isolation issue in the WebExtensions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74959 | Cri | 9.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Mitigation bypass in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74958 | Hig | 7.5 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74957 | Hig | 8.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Mitigation bypass in the Safe Browsing component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74956 | Cri | 9.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Same-origin policy bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74955 | Hig | 8.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74954 | Hig | 7.5 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74953 | Hig | 8.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74950 | Hig | 8.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74949 | Hig | 8.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74948 | Med | 6.5 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Information disclosure in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74947 | Hig | 8.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74946 | Hig | 8.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. |
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Same-origin policy bypass in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Information disclosure in the Form Autofill component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Privilege escalation in the Shell Integration component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Same-origin policy bypass in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Site isolation issue in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Side-channel in the Web Audio component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Site isolation issue in the WebExtensions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Mitigation bypass in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Information disclosure in the WebRTC component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Mitigation bypass in the Safe Browsing component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Same-origin policy bypass in the DOM: Service Workers component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Privilege escalation in the Request Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Information disclosure due to side-channel in the Storage: Cache API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Privilege escalation in the Networking: Cookies component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Privilege escalation in the Downloads API component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Privilege escalation due to use-after-free in the Graphics: Canvas2D component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Information disclosure in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Privilege escalation due to invalid pointer in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Privilege escalation due to incorrect boundary conditions in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
Page 2 of 6