Buffer overflow in Mozilla Firefox and Firefox for Android - CVE-2026-74989
Published: August 18, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to memory corruption in multiple unspecified components when processing web content. A remote attacker can supply crafted web content to cause a denial of service.
Some of the internally found bugs showed evidence of memory corruption or another security-relevant defect.
Affected software
Firefox for Android
How to mitigate CVE-2026-74989
Firefox for Android - update to 154.0