Description
Integer overflow in the Libraries component in NSS. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, Thunderbird 140.8, and Firefox ESR 115.35.
Published: 2026-02-24
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Potential Integrity Violation
Action: Apply Patch
AI Analysis

Impact

An integer overflow exists in the Libraries component of NSS, which can corrupt memory or lead to unintended behavior. This weakness is classified as CWE‑190, indicating that improper handling of arithmetic operations may allow an attacker to influence program flow or data. The description does not confirm a remote code execution, but the high severity suggests that successful exploitation could compromise integrity or allow privilege escalation within the affected application or system. The vulnerability has been fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, Thunderbird 140.8, and Firefox ESR 115.35.

Affected Systems

Mozilla Firefox versions prior to 148 and Firefox ESR 140.8, as well as Mozilla Thunderbird versions prior to 148 and Thunderbird ESR 140.8, all use the vulnerable NSS library. Updated releases contain the fix and are therefore unaffected.

Risk and Exploitability

The CVSS score of 8.8 classifies the issue as high severity, yet the EPSS score of less than 1% indicates a very low likelihood of real‑world exploitation at this time. The vulnerability is not listed in the CISA KEV catalogue. Based on the description, it is inferred that attackers would need to deliver malicious data that triggers the overflow via the affected NSS component, which is likely to occur in a client‑side scenario such as browsing or email processing. Because the impact can be severe if exploited, vigilance is warranted despite the low exploitation probability.

Generated by OpenCVE AI on April 22, 2026 at 03:42 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to Firefox 148 or later, or Firefox ESR 140.8 or later, to receive the NSS security fix.
  • Upgrade to Thunderbird 148 or later, or Thunderbird ESR 140.8 or later, to apply the same patch.
  • If upgrading immediately is not possible, monitor for official workarounds; avoid using applications that rely on the vulnerable NSS component until a patch is available.

Generated by OpenCVE AI on April 22, 2026 at 03:42 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DLA Debian DLA DLA-4495-1 thunderbird security update
Debian DLA Debian DLA DLA-4496-1 firefox-esr security update
Debian DLA Debian DLA DLA-4508-1 nss security update
Debian DSA Debian DSA DSA-6148-1 firefox-esr security update
Debian DSA Debian DSA DSA-6149-1 nss security update
Debian DSA Debian DSA DSA-6152-1 thunderbird security update
Ubuntu USN Ubuntu USN USN-8071-2 NSS vulnerability
History

Tue, 21 Apr 2026 13:15:00 +0000

Type Values Removed Values Added
Description Integer overflow in the Libraries component in NSS. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8. Integer overflow in the Libraries component in NSS. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, Thunderbird 140.8, and Firefox ESR 115.35.
References

Mon, 13 Apr 2026 14:30:00 +0000

Type Values Removed Values Added
Description Integer overflow in the Libraries component in NSS. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8. Integer overflow in the Libraries component in NSS. This vulnerability was fixed in Firefox 148, Firefox ESR 140.8, Thunderbird 148, and Thunderbird 140.8.

Wed, 25 Mar 2026 17:30:00 +0000

Type Values Removed Values Added
References

Sat, 28 Feb 2026 03:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}

cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


Wed, 25 Feb 2026 16:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-190
CPEs cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:*
cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:*
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:-:*:*:*
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:esr:*:*:*
Metrics cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}

cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Wed, 25 Feb 2026 12:00:00 +0000

Type Values Removed Values Added
First Time appeared Mozilla
Mozilla firefox
Mozilla firefox Esr
Mozilla thunderbird
Vendors & Products Mozilla
Mozilla firefox
Mozilla firefox Esr
Mozilla thunderbird

Wed, 25 Feb 2026 00:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

cvssV3_1

{'score': 6.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N'}

threat_severity

Moderate


Tue, 24 Feb 2026 18:00:00 +0000

Type Values Removed Values Added
Description Integer overflow in the Libraries component in NSS. This vulnerability affects Firefox < 148 and Firefox ESR < 140.8. Integer overflow in the Libraries component in NSS. This vulnerability affects Firefox < 148, Firefox ESR < 140.8, Thunderbird < 148, and Thunderbird < 140.8.
References

Tue, 24 Feb 2026 14:00:00 +0000

Type Values Removed Values Added
Description Integer overflow in the Libraries component in NSS. This vulnerability affects Firefox < 148 and Firefox ESR < 140.8.
Title Integer overflow in the Libraries component in NSS
References

Subscriptions

Mozilla Firefox Firefox Esr Thunderbird
cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published:

Updated: 2026-04-21T12:40:43.312Z

Reserved: 2026-02-19T15:06:13.592Z

Link: CVE-2026-2781

cve-icon Vulnrichment

Updated: 2026-03-25T16:26:01.616Z

cve-icon NVD

Status : Modified

Published: 2026-02-24T14:16:26.533

Modified: 2026-04-21T13:16:19.220

Link: CVE-2026-2781

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-02-24T13:33:15Z

Links: CVE-2026-2781 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-04-22T03:45:06Z

Weaknesses