CVE-2026-6748
Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird
CVSS
9.8
Crítico
EPSS
0.4%
p34
KEV
—
Exploit Today
10
0-100
Publicado: 21 abr 2026 · Última mod.: 15 jul 2026 · CWE-457 · CWE-824
0.4%EPSS · 30 días0.4%
2026-08-252026-09-22
Uninitialized memory in the Audio/Video: Web Codecs component. This vulnerability was fixed in Firefox 150, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
- bugzilla.mozilla.orghttps://bugzilla.mozilla.org/show_bug.cgi?id=2022604
- www.mozilla.orghttps://www.mozilla.org/security/advisories/mfsa2026-30/
- www.mozilla.orghttps://www.mozilla.org/security/advisories/mfsa2026-32/
- www.mozilla.orghttps://www.mozilla.org/security/advisories/mfsa2026-33/
- www.mozilla.orghttps://www.mozilla.org/security/advisories/mfsa2026-34/
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:10757
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:10766
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:10767
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:12285
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:13537
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:15892
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:17477
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:17687
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:17688
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:17689
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:17690
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:19041
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:19131
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:19201
- access.redhat.comhttps://access.redhat.com/errata/RHSA-2026:19348
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-587316.2 MED0.1%
——0In multiple functions of physmem_extmem_linux.c, there is a possible out-of-bounds read due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.5dCVE-2026-587214.4 MED0.1%
——0In multiple locations, there is a possible information disclosure due to uninitialized memory use. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.5dCVE-2026-919636.5 MED49.2%
——15FreeRDP versions before 3.31.0 contain an uninitialized heap memory disclosure vulnerability in the urbdrc USB redirection channel. A malicious RDP server can induce failing USB transfers to read uninitialized heap memory from the client, defeating ASLR and enabling remote code execution when chained with memory corruption vulnerabilities.6dCVE-2026-161418.1 ALT33.0%
——10OpenBMC's IPMI implementation, phosphor-net-ipmid, contains a logic flaw in which an unauthenticated client can force the RAKP Message 1 handler to return before it overwrites the authentication object's constructor defaults. The IPMI service then accepts a RAKP Message 3 whose HMAC is computed with the constant 20-byte 'userKey' initialized from the string '0penBmc' and an often-predictable 'bmcRandomNum'. Several downstream vendors implement phosphor-net-ipmid as their IPMI stack, such as NVIDIA and H3C.4dCVE-2026-920528.8 ALT17.4%
——5Privilege escalation due to uninitialized memory in the Graphics: CanvasWebGL component. This vulnerability was fixed in Firefox 156, Firefox ESR 153.3, Thunderbird 156, and Thunderbird 153.3.6dCVE-2026-845644.3 MED22.9%
——7An uninitialized memory issue was addressed with improved memory initialization. This issue is fixed in iOS 26.7 and iPadOS 26.7, iOS 27 and iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, watchOS 27. Processing a maliciously crafted image may result in disclosure of process memory.5d