CVE Vulnerabilities

CVE-2009-3379

Published: Oct 29, 2009 | Modified: Sep 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
6.8 IMPORTANT
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM

Multiple unspecified vulnerabilities in libvorbis, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors. NOTE: this might overlap CVE-2009-2663.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla 3.5.1 (including) 3.5.1 (including)
Firefox Mozilla 3.5.2 (including) 3.5.2 (including)
Firefox Mozilla 3.5.3 (including) 3.5.3 (including)
Red Hat Enterprise Linux 3 RedHat libvorbis-1:1.0-12.el3 *
Red Hat Enterprise Linux 4 RedHat libvorbis-1:1.1.0-3.el4_8.3 *
Red Hat Enterprise Linux 5 RedHat libvorbis-1:1.1.2-3.el5_4.4 *
Firefox Ubuntu dapper *
Xulrunner-1.9.1 Ubuntu devel *
Xulrunner-1.9.1 Ubuntu jaunty *
Xulrunner-1.9.1 Ubuntu karmic *
Xulrunner-1.9.1 Ubuntu upstream *

References