Skip to content
Threat Feed
medium advisory

Mozilla Firefox and Thunderbird Audio/Video Playback Denial-of-Service Vulnerability (CVE-2026-4693)

CVE-2026-4693 is a vulnerability due to incorrect boundary conditions in the Audio/Video: Playback component of Mozilla Firefox and Thunderbird, potentially leading to a denial-of-service condition.

CVE-2026-4693 is a security vulnerability affecting the Audio/Video Playback component in Mozilla Firefox and Thunderbird. This flaw, stemming from incorrect boundary conditions, can be exploited by an unauthenticated attacker to cause a denial-of-service condition. The vulnerability affects Firefox versions prior to 149, Firefox ESR versions prior to 115.34 and 140.9, and Thunderbird versions prior to 149 and 140.9. Successful exploitation of this vulnerability results in the application…

Detection coverage 2

Detect Firefox Crash

medium

Detects crashes of the Firefox process, potentially indicative of exploitation attempts like CVE-2026-4693.

sigma tactics: availability techniques: T1499 sources: process_creation, windows

Detect Thunderbird Crash

medium

Detects crashes of the Thunderbird process, potentially indicative of exploitation attempts like CVE-2026-4693.

sigma tactics: availability techniques: T1499 sources: process_creation, windows

Detection queries are kept inside the platform. Get full rules →

Indicators of compromise

1

email