CVE Vulnerabilities

CVE-2009-3379

Published: Oct 29, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
6.8 IMPORTANT
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Multiple unspecified vulnerabilities in libvorbis, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors. NOTE: this might overlap CVE-2009-2663.

Affected Software

NameVendorStart VersionEnd Version
FirefoxMozilla3.5.1 (including)3.5.1 (including)
FirefoxMozilla3.5.2 (including)3.5.2 (including)
FirefoxMozilla3.5.3 (including)3.5.3 (including)
Red Hat Enterprise Linux 3RedHatlibvorbis-1:1.0-12.el3*
Red Hat Enterprise Linux 4RedHatlibvorbis-1:1.1.0-3.el4_8.3*
Red Hat Enterprise Linux 5RedHatlibvorbis-1:1.1.2-3.el5_4.4*
FirefoxUbuntudapper*
Xulrunner-1.9.1Ubuntudevel*
Xulrunner-1.9.1Ubuntujaunty*
Xulrunner-1.9.1Ubuntukarmic*
Xulrunner-1.9.1Ubuntuupstream*

References