rpm package
opensuse/rust-cbindgen&distro=openSUSE Leap 16.0
pkg:rpm/opensuse/rust-cbindgen&distro=openSUSE%20Leap%2016.0
Vulnerabilities (115)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2026-74990 | Cri | 9.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vul | |
| CVE-2026-74988 | Cri | 9.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Internally found bugs present in Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vulnerability was fixed in | |
| CVE-2026-74987 | Cri | 9.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vul | |
| CVE-2026-74986 | Cri | 9.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Site isolation issue in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74985 | Cri | 9.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74984 | Med | 6.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Race condition in the JavaScript Engine component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74983 | Hig | 8.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Mitigation bypass in the Data Loss Prevention component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74982 | Hig | 7.5 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Denial-of-service in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74981 | Hig | 8.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Site isolation issue in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74979 | Cri | 9.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Mitigation bypass in the Add-ons Manager component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74978 | Hig | 8.1 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74977 | Hig | 7.5 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74976 | Med | 6.5 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74974 | Med | 5.4 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74973 | Med | 4.2 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Race condition, use-after-free in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74972 | Med | 4.3 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Information disclosure in the DOM: Push Subscriptions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74971 | Med | 4.3 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74970 | Med | 5.4 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. | |
| CVE-2026-74969 | Hig | 8.8 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1. | |
| CVE-2026-74968 | Med | 5.4 | < 0.29.4+git0-160000.1.1 | 0.29.4+git0-160000.1.1 | Aug 18, 2026 | Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1. |
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vul
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Internally found bugs present in Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vulnerability was fixed in
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Internally found bugs present in Thunderbird ESR 140.13, Thunderbird ESR 153.0 and Thunderbird 153. Some of these bugs showed evidence of memory corruption or another security-relevant defect and we presume that with enough effort some of these could have been exploited. This vul
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Site isolation issue in the CSS Parsing and Computation component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Privilege escalation in the Enterprise Policies component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Race condition in the JavaScript Engine component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Mitigation bypass in the Data Loss Prevention component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Denial-of-service in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Site isolation issue in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Mitigation bypass in the Add-ons Manager component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Clickjacking issue in the Widget component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Integer overflow in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Same-origin policy bypass in the Graphics: ImageLib component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Race condition, use-after-free in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Information disclosure in the DOM: Push Subscriptions component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Information disclosure in the DOM: UI Events & Focus Handling component. This vulnerability was fixed in Firefox 154, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Site isolation issue in the Graphics component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Use-after-free in the Layout: Text and Fonts component. This vulnerability was fixed in Firefox 154, Firefox ESR 115.39, Firefox ESR 140.14, Firefox ESR 153.1, Thunderbird 154, Thunderbird 140.14, and Thunderbird 153.1.
- affected < 0.29.4+git0-160000.1.1fixed 0.29.4+git0-160000.1.1
Site isolation issue in the Graphics: WebRender component. This vulnerability was fixed in Firefox 154, Firefox ESR 153.1, Thunderbird 154, and Thunderbird 153.1.
Page 1 of 6