CVE-2009-1392

HIGH

Description

The browser engine in Mozilla Firefox 3 before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to (1) nsEventStateManager::GetContentState and nsNativeTheme::CheckBooleanAttr; (2) UnhookTextRunFromFrames and ClearAllTextRunReferences; (3) nsTextFrame::ClearTextRun; (4) IsPercentageAware; (5) PL_DHashTableFinish; (6) nsListBoxBodyFrame::GetNextItemBox; (7) AtomTableClearEntry, related to the atom table, DOM mutation events, and Unicode surrogates; (8) nsHTMLEditor::HideResizers; and (9) nsWindow::SetCursor, related to changing the cursor; and other vectors.

References

http://osvdb.org/55144

http://osvdb.org/55145

http://osvdb.org/55146

http://osvdb.org/55147

http://rhn.redhat.com/errata/RHSA-2009-1096.html

http://secunia.com/advisories/35331

http://secunia.com/advisories/35415

http://secunia.com/advisories/35428

http://secunia.com/advisories/35431

http://secunia.com/advisories/35439

http://secunia.com/advisories/35440

http://secunia.com/advisories/35468

http://secunia.com/advisories/35536

http://secunia.com/advisories/35561

http://secunia.com/advisories/35602

http://securitytracker.com/id?1022376

http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.372468

http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.425408

http://sunsolve.sun.com/search/document.do?assetkey=1-26-265068-1

http://sunsolve.sun.com/search/document.do?assetkey=1-77-1020800.1-1

http://www.debian.org/security/2009/dsa-1820

http://www.debian.org/security/2009/dsa-1830

http://www.mandriva.com/security/advisories?name=MDVSA-2009:141

http://www.mozilla.org/security/announce/2009/mfsa2009-24.html

http://www.redhat.com/support/errata/RHSA-2009-1125.html

http://www.redhat.com/support/errata/RHSA-2009-1126.html

http://www.securityfocus.com/bid/35326

http://www.securityfocus.com/bid/35370

http://www.securitytracker.com/id?1022397

http://www.slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.454275

http://www.ubuntu.com/usn/usn-782-1

http://www.vupen.com/english/advisories/2009/1572

http://www.vupen.com/english/advisories/2009/2152

https://bugzilla.mozilla.org/show_bug.cgi?id=380359

https://bugzilla.mozilla.org/show_bug.cgi?id=429969

https://bugzilla.mozilla.org/show_bug.cgi?id=431086

https://bugzilla.mozilla.org/show_bug.cgi?id=432068

https://bugzilla.mozilla.org/show_bug.cgi?id=451341

https://bugzilla.mozilla.org/show_bug.cgi?id=472776

https://bugzilla.mozilla.org/show_bug.cgi?id=486398

https://bugzilla.mozilla.org/show_bug.cgi?id=489041

https://bugzilla.mozilla.org/show_bug.cgi?id=490410

https://bugzilla.mozilla.org/show_bug.cgi?id=490425

https://bugzilla.mozilla.org/show_bug.cgi?id=490513

https://bugzilla.redhat.com/show_bug.cgi?id=503568

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9501

https://rhn.redhat.com/errata/RHSA-2009-1095.html

https://www.redhat.com/archives/fedora-package-announce/2009-June/msg00574.html

https://www.redhat.com/archives/fedora-package-announce/2009-June/msg00657.html

Details

Source: MITRE

Published: 2009-06-12

Updated: 2018-10-30

Type: CWE-94

Risk Information

CVSS v2.0

Base Score: 9.3

Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 8.6

Severity: HIGH

Vulnerable Software

Configuration 1

OR

cpe:2.3:a:mozilla:firefox:3.0:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0:alpha:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0:beta2:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.2:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.3:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.4:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.5:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.6:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.7:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.8:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.9:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:firefox:3.0.10:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0:*:alpha:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0:*:beta:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0:*:dev:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0:alpha:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0:beta:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0.3:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0.4:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0.6:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0.8:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0.9:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.0.99:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1:alpha:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1:beta:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.3:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.5:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.5:1.1.10:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.6:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.7:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.8:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.9:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.10:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.11:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.12:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.13:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:1.1.15:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:* versions up to 1.1.16 (inclusive)

cpe:2.3:a:mozilla:thunderbird:0.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.2:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.3:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.4:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.5:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.6:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.7:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.7.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.7.2:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.7.3:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.8:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:0.9:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0.2:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0.3:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0.4:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0.5:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0.5:beta:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0.6:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0.7:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.0.8:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5:beta2:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.2:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.3:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.4:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.5:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.6:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.7:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.8:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.9:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.10:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.11:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.12:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.13:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.0.14:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.5.2:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.7.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:1.7.3:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.0:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.1:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.2:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.3:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.4:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.5:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.6:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.7:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.8:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.9:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.11:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.12:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.13:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.14:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.15:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.16:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.17:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0.0.18:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* versions up to 2.0.0.19 (inclusive)

cpe:2.3:a:mozilla:thunderbird:2.0_.4:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0_.5:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0_.6:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0_.9:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0_.12:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0_.13:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0_.14:*:*:*:*:*:*:*

cpe:2.3:a:mozilla:thunderbird:2.0_8:*:*:*:*:*:*:*

Tenable Plugins

View all (45 total)

IDNameProductFamilySeverity
67881Oracle Linux 4 : thunderbird (ELSA-2009-1125)NessusOracle Linux Local Security Checks
high
67870Oracle Linux 3 / 4 : seamonkey (ELSA-2009-1096)NessusOracle Linux Local Security Checks
high
67869Oracle Linux 4 / 5 : firefox (ELSA-2009-1095)NessusOracle Linux Local Security Checks
high
63881RHEL 5 : thunderbird (RHSA-2009:1126)NessusRed Hat Local Security Checks
high
63402GLSA-201301-01 : Mozilla Products: Multiple vulnerabilities (BEAST)NessusGentoo Local Security Checks
critical
60608Scientific Linux Security Update : thunderbird on SL4.x, SL5.x i386/x86_64NessusScientific Linux Local Security Checks
high
60594Scientific Linux Security Update : seamonkey on SL3.x, SL4.x i386/x86_64NessusScientific Linux Local Security Checks
high
60593Scientific Linux Security Update : firefox on SL4.x, SL5.x i386/x86_64NessusScientific Linux Local Security Checks
high
44695Debian DSA-1830-1 : icedove - several vulnerabilitiesNessusDebian Local Security Checks
critical
43762CentOS 5 : thunderbird (CESA-2009:1126)NessusCentOS Local Security Checks
high
43755CentOS 5 : firefox (CESA-2009:1095)NessusCentOS Local Security Checks
high
42327openSUSE 10 Security Update : seamonkey (seamonkey-6538)NessusSuSE Local Security Checks
high
42206openSUSE Security Update : seamonkey (seamonkey-1364)NessusSuSE Local Security Checks
high
42202openSUSE Security Update : seamonkey (seamonkey-1364)NessusSuSE Local Security Checks
high
42048SuSE9 Security Update : epiphany (YOU Patch Number 12519)NessusSuSE Local Security Checks
high
41985openSUSE 10 Security Update : MozillaThunderbird (MozillaThunderbird-6347)NessusSuSE Local Security Checks
high
41356SuSE 11 Security Update : MozillaFirefox (SAT Patch Number 1001)NessusSuSE Local Security Checks
high
40176openSUSE Security Update : MozillaThunderbird (MozillaThunderbird-1091)NessusSuSE Local Security Checks
high
40174openSUSE Security Update : MozillaFirefox (MozillaFirefox-1000)NessusSuSE Local Security Checks
high
39896openSUSE Security Update : MozillaThunderbird (MozillaThunderbird-1091)NessusSuSE Local Security Checks
high
39891openSUSE Security Update : MozillaFirefox (MozillaFirefox-1000)NessusSuSE Local Security Checks
high
39581Mandriva Linux Security Advisory : mozilla-thunderbird (MDVSA-2009:141)NessusMandriva Local Security Checks
high
39560Slackware 10.2 / 11.0 / 12.0 / 12.1 / 12.2 / current : mozilla-thunderbird (SSA:2009-178-01)NessusSlackware Local Security Checks
high
39533Ubuntu 8.04 LTS / 8.10 / 9.04 : thunderbird vulnerabilities (USN-782-1)NessusUbuntu Local Security Checks
high
39528RHEL 4 : thunderbird (RHSA-2009:1125)NessusRed Hat Local Security Checks
high
39522Slackware 11.0 / 12.0 / 12.1 / 12.2 / current : seamonkey (SSA:2009-176-01)NessusSlackware Local Security Checks
high
39494SeaMonkey < 1.1.17 Multiple VulnerabilitiesNessusWindows
high
39493Mozilla Thunderbird < 2.0.0.22 Multiple VulnerabilitiesNessusWindows
high
39452Debian DSA-1820-1 : xulrunner - several vulnerabilitiesNessusDebian Local Security Checks
high
39443Mandriva Linux Security Advisory : firefox (MDVSA-2009:134)NessusMandriva Local Security Checks
high
39421Slackware 12.2 / current : mozilla-firefox (SSA:2009-167-01)NessusSlackware Local Security Checks
high
39406Fedora 9 : Miro-2.0.3-5.fc9 / blam-1.8.5-10.fc9.1 / chmsee-1.0.1-13.fc9 / devhelp-0.19.1-13.fc9 / etc (2009-6411)NessusFedora Local Security Checks
high
39403Fedora 10 : Miro-2.0.3-5.fc10 / blam-1.8.5-11.fc10 / devhelp-0.22-9.fc10 / epiphany-2.24.3-7.fc10 / etc (2009-6366)NessusFedora Local Security Checks
high
39390Ubuntu 8.04 LTS / 8.10 / 9.04 : firefox-3.0, xulrunner-1.9 vulnerabilities (USN-779-1)NessusUbuntu Local Security Checks
high
39376FreeBSD : mozilla -- multiple vulnerabilities (da185955-5738-11de-b857-000f20797ede)NessusFreeBSD Local Security Checks
high
39373CentOS 3 : seamonkey (CESA-2009:1096)NessusCentOS Local Security Checks
high
39372Firefox < 3.0.11 Multiple VulnerabilitiesNessusWindows
high
39370RHEL 3 / 4 : seamonkey (RHSA-2009:1096)NessusRed Hat Local Security Checks
high
39369RHEL 4 / 5 : firefox (RHSA-2009:1095)NessusRed Hat Local Security Checks
high
5084SeaMonkey < 1.1.17 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
medium
5072Mozilla Firefox < 3.0.11 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
medium
5001Mozilla Thunderbird < 2.0.0.22 Multiple VulnerabilitiesNessus Network MonitorSMTP Clients
medium
801255Mozilla SeaMonkey < 1.1.17 Multiple VulnerabilitiesLog Correlation EngineWeb Clients
high
801249Mozilla Thunderbird < 2.0.0.21 Multiple VulnerabilitiesLog Correlation EngineSMTP Clients
high
800755Firefox < 3.0.11 Multiple VulnerabilitiesLog Correlation EngineWeb Clients
high