Multiple unspecified vulnerabilities in libvorbis, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors. NOTE: this might overlap CVE-2009-2663.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firefox | Mozilla | 3.5.1 (including) | 3.5.1 (including) |
Firefox | Mozilla | 3.5.2 (including) | 3.5.2 (including) |
Firefox | Mozilla | 3.5.3 (including) | 3.5.3 (including) |
Red Hat Enterprise Linux 3 | RedHat | libvorbis-1:1.0-12.el3 | * |
Red Hat Enterprise Linux 4 | RedHat | libvorbis-1:1.1.0-3.el4_8.3 | * |
Red Hat Enterprise Linux 5 | RedHat | libvorbis-1:1.1.2-3.el5_4.4 | * |
Firefox | Ubuntu | dapper | * |
Xulrunner-1.9.1 | Ubuntu | devel | * |
Xulrunner-1.9.1 | Ubuntu | jaunty | * |
Xulrunner-1.9.1 | Ubuntu | karmic | * |
Xulrunner-1.9.1 | Ubuntu | upstream | * |