CVE Vulnerabilities

CVE-2009-2462

Published: Jul 22, 2009 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
6.8 CRITICAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM

The browser engine in Mozilla Firefox before 3.0.12 and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to (1) the frame chain and synchronous events, (2) a SetMayHaveFrame assertion and nsCSSFrameConstructor::CreateFloatingLetterFrame, (3) nsCSSFrameConstructor::ConstructFrame, (4) the child list and initial reflow, (5) GetLastSpecialSibling, (6) nsFrameManager::GetPrimaryFrameFor and MathML, (7) nsFrame::GetBoxAscent, (8) nsCSSFrameConstructor::AdjustParentFrame, (9) nsDOMOfflineResourceList, and (10) nsContentUtils::ComparePosition.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla * 3.0.11 (including)
Firefox Mozilla 0.1 (including) 0.1 (including)
Firefox Mozilla 0.2 (including) 0.2 (including)
Firefox Mozilla 0.3 (including) 0.3 (including)
Firefox Mozilla 0.4 (including) 0.4 (including)
Firefox Mozilla 0.5 (including) 0.5 (including)
Firefox Mozilla 0.6 (including) 0.6 (including)
Firefox Mozilla 0.6.1 (including) 0.6.1 (including)
Firefox Mozilla 0.7 (including) 0.7 (including)
Firefox Mozilla 0.7.1 (including) 0.7.1 (including)
Firefox Mozilla 0.8 (including) 0.8 (including)
Firefox Mozilla 0.9 (including) 0.9 (including)
Firefox Mozilla 0.9-rc (including) 0.9-rc (including)
Firefox Mozilla 0.9.1 (including) 0.9.1 (including)
Firefox Mozilla 0.9.2 (including) 0.9.2 (including)
Firefox Mozilla 0.9.3 (including) 0.9.3 (including)
Firefox Mozilla 0.9_rc (including) 0.9_rc (including)
Firefox Mozilla 0.10 (including) 0.10 (including)
Firefox Mozilla 0.10.1 (including) 0.10.1 (including)
Firefox Mozilla 1.0 (including) 1.0 (including)
Firefox Mozilla 1.0-preview_release (including) 1.0-preview_release (including)
Firefox Mozilla 1.0.1 (including) 1.0.1 (including)
Firefox Mozilla 1.0.2 (including) 1.0.2 (including)
Firefox Mozilla 1.0.3 (including) 1.0.3 (including)
Firefox Mozilla 1.0.4 (including) 1.0.4 (including)
Firefox Mozilla 1.0.5 (including) 1.0.5 (including)
Firefox Mozilla 1.0.6 (including) 1.0.6 (including)
Firefox Mozilla 1.0.7 (including) 1.0.7 (including)
Firefox Mozilla 1.0.8 (including) 1.0.8 (including)
Firefox Mozilla 1.4.1 (including) 1.4.1 (including)
Firefox Mozilla 1.5 (including) 1.5 (including)
Firefox Mozilla 1.5-beta1 (including) 1.5-beta1 (including)
Firefox Mozilla 1.5-beta2 (including) 1.5-beta2 (including)
Firefox Mozilla 1.5.0.1 (including) 1.5.0.1 (including)
Firefox Mozilla 1.5.0.2 (including) 1.5.0.2 (including)
Firefox Mozilla 1.5.0.3 (including) 1.5.0.3 (including)
Firefox Mozilla 1.5.0.4 (including) 1.5.0.4 (including)
Firefox Mozilla 1.5.0.5 (including) 1.5.0.5 (including)
Firefox Mozilla 1.5.0.6 (including) 1.5.0.6 (including)
Firefox Mozilla 1.5.0.7 (including) 1.5.0.7 (including)
Firefox Mozilla 1.5.0.8 (including) 1.5.0.8 (including)
Firefox Mozilla 1.5.0.9 (including) 1.5.0.9 (including)
Firefox Mozilla 1.5.0.10 (including) 1.5.0.10 (including)
Firefox Mozilla 1.5.0.11 (including) 1.5.0.11 (including)
Firefox Mozilla 1.5.0.12 (including) 1.5.0.12 (including)
Firefox Mozilla 1.5.1 (including) 1.5.1 (including)
Firefox Mozilla 1.5.2 (including) 1.5.2 (including)
Firefox Mozilla 1.5.3 (including) 1.5.3 (including)
Firefox Mozilla 1.5.4 (including) 1.5.4 (including)
Firefox Mozilla 1.5.5 (including) 1.5.5 (including)
Firefox Mozilla 1.5.6 (including) 1.5.6 (including)
Firefox Mozilla 1.5.7 (including) 1.5.7 (including)
Firefox Mozilla 1.5.8 (including) 1.5.8 (including)
Firefox Mozilla 1.8 (including) 1.8 (including)
Firefox Mozilla 2.0 (including) 2.0 (including)
Firefox Mozilla 2.0-beta_1 (including) 2.0-beta_1 (including)
Firefox Mozilla 2.0-beta1 (including) 2.0-beta1 (including)
Firefox Mozilla 2.0-rc2 (including) 2.0-rc2 (including)
Firefox Mozilla 2.0-rc3 (including) 2.0-rc3 (including)
Firefox Mozilla 2.0.0.1 (including) 2.0.0.1 (including)
Firefox Mozilla 2.0.0.2 (including) 2.0.0.2 (including)
Firefox Mozilla 2.0.0.3 (including) 2.0.0.3 (including)
Firefox Mozilla 2.0.0.4 (including) 2.0.0.4 (including)
Firefox Mozilla 2.0.0.5 (including) 2.0.0.5 (including)
Firefox Mozilla 2.0.0.6 (including) 2.0.0.6 (including)
Firefox Mozilla 2.0.0.7 (including) 2.0.0.7 (including)
Firefox Mozilla 2.0.0.8 (including) 2.0.0.8 (including)
Firefox Mozilla 2.0.0.9 (including) 2.0.0.9 (including)
Firefox Mozilla 2.0.0.10 (including) 2.0.0.10 (including)
Firefox Mozilla 2.0.0.11 (including) 2.0.0.11 (including)
Firefox Mozilla 2.0.0.12 (including) 2.0.0.12 (including)
Firefox Mozilla 2.0.0.13 (including) 2.0.0.13 (including)
Firefox Mozilla 2.0.0.14 (including) 2.0.0.14 (including)
Firefox Mozilla 2.0.0.15 (including) 2.0.0.15 (including)
Firefox Mozilla 2.0.0.16 (including) 2.0.0.16 (including)
Firefox Mozilla 2.0.0.17 (including) 2.0.0.17 (including)
Firefox Mozilla 2.0.0.18 (including) 2.0.0.18 (including)
Firefox Mozilla 2.0.0.19 (including) 2.0.0.19 (including)
Firefox Mozilla 2.0.0.20 (including) 2.0.0.20 (including)
Firefox Mozilla 2.0.0.21 (including) 2.0.0.21 (including)
Firefox Mozilla 2.0_.1 (including) 2.0_.1 (including)
Firefox Mozilla 2.0_.4 (including) 2.0_.4 (including)
Firefox Mozilla 2.0_.5 (including) 2.0_.5 (including)
Firefox Mozilla 2.0_.6 (including) 2.0_.6 (including)
Firefox Mozilla 2.0_.7 (including) 2.0_.7 (including)
Firefox Mozilla 2.0_.9 (including) 2.0_.9 (including)
Firefox Mozilla 2.0_.10 (including) 2.0_.10 (including)
Firefox Mozilla 2.0_8 (including) 2.0_8 (including)
Firefox Mozilla 3.0 (including) 3.0 (including)
Firefox Mozilla 3.0-alpha (including) 3.0-alpha (including)
Firefox Mozilla 3.0-beta2 (including) 3.0-beta2 (including)
Firefox Mozilla 3.0-beta5 (including) 3.0-beta5 (including)
Firefox Mozilla 3.0.1 (including) 3.0.1 (including)
Firefox Mozilla 3.0.2 (including) 3.0.2 (including)
Firefox Mozilla 3.0.3 (including) 3.0.3 (including)
Firefox Mozilla 3.0.4 (including) 3.0.4 (including)
Firefox Mozilla 3.0.5 (including) 3.0.5 (including)
Firefox Mozilla 3.0.6 (including) 3.0.6 (including)
Firefox Mozilla 3.0.7 (including) 3.0.7 (including)
Firefox Mozilla 3.0.8 (including) 3.0.8 (including)
Firefox Mozilla 3.0.9 (including) 3.0.9 (including)
Firefox Mozilla 3.0.10 (including) 3.0.10 (including)
Thunderbird Mozilla 2.0.0.0 (including) 2.0.0.0 (including)
Thunderbird Mozilla 2.0.0.1 (including) 2.0.0.1 (including)
Thunderbird Mozilla 2.0.0.2 (including) 2.0.0.2 (including)
Thunderbird Mozilla 2.0.0.3 (including) 2.0.0.3 (including)
Thunderbird Mozilla 2.0.0.4 (including) 2.0.0.4 (including)
Thunderbird Mozilla 2.0.0.5 (including) 2.0.0.5 (including)
Thunderbird Mozilla 2.0.0.6 (including) 2.0.0.6 (including)
Thunderbird Mozilla 2.0.0.7 (including) 2.0.0.7 (including)
Thunderbird Mozilla 2.0.0.8 (including) 2.0.0.8 (including)
Thunderbird Mozilla 2.0.0.9 (including) 2.0.0.9 (including)
Thunderbird Mozilla 2.0.0.11 (including) 2.0.0.11 (including)
Thunderbird Mozilla 2.0.0.12 (including) 2.0.0.12 (including)
Thunderbird Mozilla 2.0.0.13 (including) 2.0.0.13 (including)
Thunderbird Mozilla 2.0.0.14 (including) 2.0.0.14 (including)
Thunderbird Mozilla 2.0.0.15 (including) 2.0.0.15 (including)
Thunderbird Mozilla 2.0.0.16 (including) 2.0.0.16 (including)
Thunderbird Mozilla 2.0.0.17 (including) 2.0.0.17 (including)
Thunderbird Mozilla 2.0.0.18 (including) 2.0.0.18 (including)
Thunderbird Mozilla 2.0.0.19 (including) 2.0.0.19 (including)
Thunderbird Mozilla 2.0.0.20 (including) 2.0.0.20 (including)
Thunderbird Mozilla 2.0.0.21 (including) 2.0.0.21 (including)
Red Hat Enterprise Linux 3 RedHat seamonkey-0:1.0.9-0.40.el3 *
Red Hat Enterprise Linux 4 RedHat firefox-0:3.0.12-1.el4 *
Red Hat Enterprise Linux 4 RedHat seamonkey-0:1.0.9-45.el4_8 *
Red Hat Enterprise Linux 4 RedHat thunderbird-0:1.5.0.12-25.el4 *
Red Hat Enterprise Linux 5 RedHat firefox-0:3.0.12-1.el5_3 *
Red Hat Enterprise Linux 5 RedHat xulrunner-0:1.9.0.12-1.el5_3 *
Red Hat Enterprise Linux 5 RedHat thunderbird-0:2.0.0.24-2.el5_4 *
Firefox Ubuntu dapper *
Firefox Ubuntu hardy *
Thunderbird Ubuntu hardy *
Thunderbird Ubuntu intrepid *
Thunderbird Ubuntu jaunty *
Thunderbird Ubuntu karmic *
Thunderbird Ubuntu upstream *
Xulrunner Ubuntu hardy *
Xulrunner Ubuntu intrepid *
Xulrunner Ubuntu jaunty *
Xulrunner Ubuntu karmic *
Xulrunner-1.9 Ubuntu hardy *
Xulrunner-1.9 Ubuntu intrepid *
Xulrunner-1.9 Ubuntu jaunty *
Xulrunner-1.9.1 Ubuntu jaunty *
Xulrunner-1.9.1 Ubuntu karmic *

References