Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-3389

Опубликовано: 17 дек. 2009
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 9.3

Описание

Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

2.0.4+nobinonly-0ubuntu1
hardy

released

2.0.8+build1+nobinonly-0ubuntu0.8.04.1
intrepid

ignored

end of life, was needed
jaunty

released

2.0.8+build1+nobinonly-0ubuntu0.9.04.1
karmic

released

2.0.8+build1+nobinonly-0ubuntu0.9.10.1
lucid

released

2.0.8+build1+nobinonly-0ubuntu0.10.04.1
upstream

released

2.0.1

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

hardy

DNE

intrepid

DNE

jaunty

released

1.9.1.6+nobinonly-0ubuntu0.9.04.1
karmic

released

1.9.1.6+nobinonly-0ubuntu0.9.10.1
lucid

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 89%
0.0553
Низкий

9.3 Critical

CVSS2

Связанные уязвимости

redhat
почти 16 лет назад

Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.

nvd
почти 16 лет назад

Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.

debian
почти 16 лет назад

Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used i ...

github
больше 3 лет назад

Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.

EPSS

Процентиль: 89%
0.0553
Низкий

9.3 Critical

CVSS2