Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-3382

Опубликовано: 29 окт. 2009
Источник: ubuntu
Приоритет: untriaged
EPSS Средний
CVSS2: 10

Описание

layout/base/nsCSSFrameConstructor.cpp in the browser engine in Mozilla Firefox 3.0.x before 3.0.15 does not properly handle first-letter frames, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

released

3.0.15+nobinonly-0ubuntu0.8.04.1
intrepid

released

3.0.15+nobinonly-0ubuntu0.8.10.1
jaunty

released

3.0.15+nobinonly-0ubuntu0.9.04.1
karmic

DNE

upstream

released

3.0.15

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

released

1.9.0.15+nobinonly-0ubuntu0.8.04.1
intrepid

released

1.9.0.15+nobinonly-0ubuntu0.8.10.1
jaunty

released

1.9.0.15+nobinonly-0ubuntu0.9.04.1
karmic

DNE

upstream

released

1.9.0.15

Показывать по

EPSS

Процентиль: 95%
0.18233
Средний

10 Critical

CVSS2

Связанные уязвимости

redhat
больше 15 лет назад

layout/base/nsCSSFrameConstructor.cpp in the browser engine in Mozilla Firefox 3.0.x before 3.0.15 does not properly handle first-letter frames, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.

nvd
больше 15 лет назад

layout/base/nsCSSFrameConstructor.cpp in the browser engine in Mozilla Firefox 3.0.x before 3.0.15 does not properly handle first-letter frames, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.

debian
больше 15 лет назад

layout/base/nsCSSFrameConstructor.cpp in the browser engine in Mozilla ...

github
около 3 лет назад

layout/base/nsCSSFrameConstructor.cpp in the browser engine in Mozilla Firefox 3.0.x before 3.0.15 does not properly handle first-letter frames, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.

oracle-oval
больше 15 лет назад

ELSA-2009-1530: firefox security update (CRITICAL)

EPSS

Процентиль: 95%
0.18233
Средний

10 Critical

CVSS2