CVE Vulnerabilities

CVE-2009-2462

Published: Jul 22, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
6.8 CRITICAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

The browser engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to (1) the frame chain and synchronous events, (2) a SetMayHaveFrame assertion and nsCSSFrameConstructor::CreateFloatingLetterFrame, (3) nsCSSFrameConstructor::ConstructFrame, (4) the child list and initial reflow, (5) GetLastSpecialSibling, (6) nsFrameManager::GetPrimaryFrameFor and MathML, (7) nsFrame::GetBoxAscent, (8) nsCSSFrameConstructor::AdjustParentFrame, (9) nsDOMOfflineResourceList, and (10) nsContentUtils::ComparePosition.

Affected Software

NameVendorStart VersionEnd Version
FirefoxMozilla*3.0.11 (including)
FirefoxMozilla0.1 (including)0.1 (including)
FirefoxMozilla0.2 (including)0.2 (including)
FirefoxMozilla0.3 (including)0.3 (including)
FirefoxMozilla0.4 (including)0.4 (including)
FirefoxMozilla0.5 (including)0.5 (including)
FirefoxMozilla0.6 (including)0.6 (including)
FirefoxMozilla0.6.1 (including)0.6.1 (including)
FirefoxMozilla0.7 (including)0.7 (including)
FirefoxMozilla0.7.1 (including)0.7.1 (including)
FirefoxMozilla0.8 (including)0.8 (including)
FirefoxMozilla0.9 (including)0.9 (including)
FirefoxMozilla0.9-rc (including)0.9-rc (including)
FirefoxMozilla0.9.1 (including)0.9.1 (including)
FirefoxMozilla0.9.2 (including)0.9.2 (including)
FirefoxMozilla0.9.3 (including)0.9.3 (including)
FirefoxMozilla0.9_rc (including)0.9_rc (including)
FirefoxMozilla0.10 (including)0.10 (including)
FirefoxMozilla0.10.1 (including)0.10.1 (including)
FirefoxMozilla1.0 (including)1.0 (including)
FirefoxMozilla1.0-preview_release (including)1.0-preview_release (including)
FirefoxMozilla1.0.1 (including)1.0.1 (including)
FirefoxMozilla1.0.2 (including)1.0.2 (including)
FirefoxMozilla1.0.3 (including)1.0.3 (including)
FirefoxMozilla1.0.4 (including)1.0.4 (including)
FirefoxMozilla1.0.5 (including)1.0.5 (including)
FirefoxMozilla1.0.6 (including)1.0.6 (including)
FirefoxMozilla1.0.7 (including)1.0.7 (including)
FirefoxMozilla1.0.8 (including)1.0.8 (including)
FirefoxMozilla1.4.1 (including)1.4.1 (including)
FirefoxMozilla1.5 (including)1.5 (including)
FirefoxMozilla1.5-beta1 (including)1.5-beta1 (including)
FirefoxMozilla1.5-beta2 (including)1.5-beta2 (including)
FirefoxMozilla1.5.0.1 (including)1.5.0.1 (including)
FirefoxMozilla1.5.0.2 (including)1.5.0.2 (including)
FirefoxMozilla1.5.0.3 (including)1.5.0.3 (including)
FirefoxMozilla1.5.0.4 (including)1.5.0.4 (including)
FirefoxMozilla1.5.0.5 (including)1.5.0.5 (including)
FirefoxMozilla1.5.0.6 (including)1.5.0.6 (including)
FirefoxMozilla1.5.0.7 (including)1.5.0.7 (including)
FirefoxMozilla1.5.0.8 (including)1.5.0.8 (including)
FirefoxMozilla1.5.0.9 (including)1.5.0.9 (including)
FirefoxMozilla1.5.0.10 (including)1.5.0.10 (including)
FirefoxMozilla1.5.0.11 (including)1.5.0.11 (including)
FirefoxMozilla1.5.0.12 (including)1.5.0.12 (including)
FirefoxMozilla1.5.1 (including)1.5.1 (including)
FirefoxMozilla1.5.2 (including)1.5.2 (including)
FirefoxMozilla1.5.3 (including)1.5.3 (including)
FirefoxMozilla1.5.4 (including)1.5.4 (including)
FirefoxMozilla1.5.5 (including)1.5.5 (including)
FirefoxMozilla1.5.6 (including)1.5.6 (including)
FirefoxMozilla1.5.7 (including)1.5.7 (including)
FirefoxMozilla1.5.8 (including)1.5.8 (including)
FirefoxMozilla1.8 (including)1.8 (including)
FirefoxMozilla2.0 (including)2.0 (including)
FirefoxMozilla2.0-beta_1 (including)2.0-beta_1 (including)
FirefoxMozilla2.0-beta1 (including)2.0-beta1 (including)
FirefoxMozilla2.0-rc2 (including)2.0-rc2 (including)
FirefoxMozilla2.0-rc3 (including)2.0-rc3 (including)
FirefoxMozilla2.0.0.1 (including)2.0.0.1 (including)
FirefoxMozilla2.0.0.2 (including)2.0.0.2 (including)
FirefoxMozilla2.0.0.3 (including)2.0.0.3 (including)
FirefoxMozilla2.0.0.4 (including)2.0.0.4 (including)
FirefoxMozilla2.0.0.5 (including)2.0.0.5 (including)
FirefoxMozilla2.0.0.6 (including)2.0.0.6 (including)
FirefoxMozilla2.0.0.7 (including)2.0.0.7 (including)
FirefoxMozilla2.0.0.8 (including)2.0.0.8 (including)
FirefoxMozilla2.0.0.9 (including)2.0.0.9 (including)
FirefoxMozilla2.0.0.10 (including)2.0.0.10 (including)
FirefoxMozilla2.0.0.11 (including)2.0.0.11 (including)
FirefoxMozilla2.0.0.12 (including)2.0.0.12 (including)
FirefoxMozilla2.0.0.13 (including)2.0.0.13 (including)
FirefoxMozilla2.0.0.14 (including)2.0.0.14 (including)
FirefoxMozilla2.0.0.15 (including)2.0.0.15 (including)
FirefoxMozilla2.0.0.16 (including)2.0.0.16 (including)
FirefoxMozilla2.0.0.17 (including)2.0.0.17 (including)
FirefoxMozilla2.0.0.18 (including)2.0.0.18 (including)
FirefoxMozilla2.0.0.19 (including)2.0.0.19 (including)
FirefoxMozilla2.0.0.20 (including)2.0.0.20 (including)
FirefoxMozilla2.0.0.21 (including)2.0.0.21 (including)
FirefoxMozilla2.0_.1 (including)2.0_.1 (including)
FirefoxMozilla2.0_.4 (including)2.0_.4 (including)
FirefoxMozilla2.0_.5 (including)2.0_.5 (including)
FirefoxMozilla2.0_.6 (including)2.0_.6 (including)
FirefoxMozilla2.0_.7 (including)2.0_.7 (including)
FirefoxMozilla2.0_.9 (including)2.0_.9 (including)
FirefoxMozilla2.0_.10 (including)2.0_.10 (including)
FirefoxMozilla2.0_8 (including)2.0_8 (including)
FirefoxMozilla3.0 (including)3.0 (including)
FirefoxMozilla3.0-alpha (including)3.0-alpha (including)
FirefoxMozilla3.0-beta2 (including)3.0-beta2 (including)
FirefoxMozilla3.0-beta5 (including)3.0-beta5 (including)
FirefoxMozilla3.0.1 (including)3.0.1 (including)
FirefoxMozilla3.0.2 (including)3.0.2 (including)
FirefoxMozilla3.0.3 (including)3.0.3 (including)
FirefoxMozilla3.0.4 (including)3.0.4 (including)
FirefoxMozilla3.0.5 (including)3.0.5 (including)
FirefoxMozilla3.0.6 (including)3.0.6 (including)
FirefoxMozilla3.0.7 (including)3.0.7 (including)
FirefoxMozilla3.0.8 (including)3.0.8 (including)
FirefoxMozilla3.0.9 (including)3.0.9 (including)
FirefoxMozilla3.0.10 (including)3.0.10 (including)
ThunderbirdMozilla2.0.0.0 (including)2.0.0.0 (including)
ThunderbirdMozilla2.0.0.1 (including)2.0.0.1 (including)
ThunderbirdMozilla2.0.0.2 (including)2.0.0.2 (including)
ThunderbirdMozilla2.0.0.3 (including)2.0.0.3 (including)
ThunderbirdMozilla2.0.0.4 (including)2.0.0.4 (including)
ThunderbirdMozilla2.0.0.5 (including)2.0.0.5 (including)
ThunderbirdMozilla2.0.0.6 (including)2.0.0.6 (including)
ThunderbirdMozilla2.0.0.7 (including)2.0.0.7 (including)
ThunderbirdMozilla2.0.0.8 (including)2.0.0.8 (including)
ThunderbirdMozilla2.0.0.9 (including)2.0.0.9 (including)
ThunderbirdMozilla2.0.0.11 (including)2.0.0.11 (including)
ThunderbirdMozilla2.0.0.12 (including)2.0.0.12 (including)
ThunderbirdMozilla2.0.0.13 (including)2.0.0.13 (including)
ThunderbirdMozilla2.0.0.14 (including)2.0.0.14 (including)
ThunderbirdMozilla2.0.0.15 (including)2.0.0.15 (including)
ThunderbirdMozilla2.0.0.16 (including)2.0.0.16 (including)
ThunderbirdMozilla2.0.0.17 (including)2.0.0.17 (including)
ThunderbirdMozilla2.0.0.18 (including)2.0.0.18 (including)
ThunderbirdMozilla2.0.0.19 (including)2.0.0.19 (including)
ThunderbirdMozilla2.0.0.20 (including)2.0.0.20 (including)
ThunderbirdMozilla2.0.0.21 (including)2.0.0.21 (including)
Red Hat Enterprise Linux 3RedHatseamonkey-0:1.0.9-0.40.el3*
Red Hat Enterprise Linux 4RedHatfirefox-0:3.0.12-1.el4*
Red Hat Enterprise Linux 4RedHatseamonkey-0:1.0.9-45.el4_8*
Red Hat Enterprise Linux 4RedHatthunderbird-0:1.5.0.12-25.el4*
Red Hat Enterprise Linux 5RedHatfirefox-0:3.0.12-1.el5_3*
Red Hat Enterprise Linux 5RedHatxulrunner-0:1.9.0.12-1.el5_3*
Red Hat Enterprise Linux 5RedHatthunderbird-0:2.0.0.24-2.el5_4*
FirefoxUbuntudapper*
FirefoxUbuntuhardy*
ThunderbirdUbuntuhardy*
ThunderbirdUbuntuintrepid*
ThunderbirdUbuntujaunty*
ThunderbirdUbuntukarmic*
ThunderbirdUbuntuupstream*
XulrunnerUbuntuhardy*
XulrunnerUbuntuintrepid*
XulrunnerUbuntujaunty*
XulrunnerUbuntukarmic*
Xulrunner-1.9Ubuntuhardy*
Xulrunner-1.9Ubuntuintrepid*
Xulrunner-1.9Ubuntujaunty*
Xulrunner-1.9.1Ubuntujaunty*
Xulrunner-1.9.1Ubuntukarmic*

References