ThreatCluster[verified]@threatclusterPatch
Oracle has issued patched Firefox ESR builds for Linux 7 that fix 39 CVEs, including CVE‑2026‑2447 and CVE‑2026‑4684, but the text doesn’t detail the vulnerabilities or provide exploit information.
Cyber Daily News[verified]@CyberDaily_NewsPatch
Firefox 147.0.4 releases a patch for CVE‑2026‑2447, a heap overflow in libvpx that could lead to remote code execution, and applies sandboxing to limit the blast radius.
WindowsForum[verified]@windowsforumPatch
The post highlights the release of Firefox 147.0.4, which patches a libvpx bug (CVE‑2026‑2447), and advises users to upgrade for safety.
ThreatSynop[verified]@ThreatSynopPatch
Mozilla released Firefox 147.0.3 to patch a critical libvpx heap overflow (CVE‑2026‑2447), advising users to upgrade to mitigate potential remote code execution from crafted media.
ThreatSynop[verified]@ThreatSynopPatch
Mozilla released an emergency update for Firefox 147.0.3 to address a high‑impact heap buffer overflow that could lead to remote code execution. Users are urged to update to patched builds to mitigate potential exploitation.
趣テクノロジー[verified]@omomuki_techPatch
Mozilla released Firefox 147.0.4 (ESR 140.7.1/115.32.1) to patch CVE-2026-2447, a heap buffer overflow in libvpx, with clear update instructions and no reported active exploitation or PoC.
Lewis Lu[verified]@theLewisLuPatch
The post alerts users to a heap overflow CVE‑2026‑2447 in libvpx affecting Firefox and stresses the urgency of patching older versions.
xvonfers@xvonfersDisclosure
CVE‑2026‑2447 describes a heap buffer overflow in libvpx(vp9); the text references a Mozilla revision and advisory, providing disclosure details but no PoC, exploit, or patch information.