CVE-2009-3069

high
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

References

http://secunia.com/advisories/36671

http://secunia.com/advisories/37098

http://www.mozilla.org/security/announce/2009/mfsa2009-47.html

http://www.novell.com/linux/security/advisories/2009_48_firefox.html

http://www.securityfocus.com/bid/36343

https://bugzilla.mozilla.org/show_bug.cgi?id=506838

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5989

Details

Source: MITRE

Published: 2009-09-10

Updated: 2017-09-19

Risk Information

CVSS v2

Base Score: 10

Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 10

Severity: HIGH

Tenable Plugins

View all (18 total)

IDNameProductFamilySeverity
67922Oracle Linux 4 / 5 : firefox (ELSA-2009-1430)NessusOracle Linux Local Security Checks
critical
63402GLSA-201301-01 : Mozilla Products: Multiple vulnerabilities (BEAST)NessusGentoo Local Security Checks
critical
52687SuSE 11 Security Update : Mozilla (SAT Patch Number 1328)NessusSuSE Local Security Checks
critical
49852SuSE 10 Security Update : Mozilla Firefox (ZYPP Patch Number 6563)NessusSuSE Local Security Checks
critical
44934SuSE 10 Security Update : Mozilla Firefox (ZYPP Patch Number 6562)NessusSuSE Local Security Checks
critical
42189SuSE Security Update: Security update for Mozilla Firefox (firefox35upgrade-6562)NessusSuSE Local Security Checks
critical
41984openSUSE 10 Security Update : MozillaFirefox (MozillaFirefox-6495)NessusSuSE Local Security Checks
critical
41957SuSE 11 Security Update : Mozilla (SAT Patch Number 1328)NessusSuSE Local Security Checks
critical
41955SuSE 11 Security Update : Firefox (SAT Patch Number 1340)NessusSuSE Local Security Checks
critical
41039openSUSE Security Update : MozillaFirefox (MozillaFirefox-1312)NessusSuSE Local Security Checks
critical
41033openSUSE Security Update : MozillaFirefox (MozillaFirefox-1312)NessusSuSE Local Security Checks
critical
41027Mandriva Linux Security Advisory : firefox (MDVSA-2009:236)NessusMandriva Local Security Checks
critical
40956Fedora 11 : Miro-2.5.2-4.fc11 / blam-1.8.5-14.fc11 / chmsee-1.0.1-11.fc11 / eclipse-3.4.2-15.fc11 / etc (2009-9505)NessusFedora Local Security Checks
critical
40935FreeBSD : mozilla firefox -- multiple vulnerabilities (922d2398-9e2d-11de-a998-0030843d3802)NessusFreeBSD Local Security Checks
critical
40932CentOS 4 / 5 : firefox / seamonkey (CESA-2009:1430)NessusCentOS Local Security Checks
critical
5161Mozilla Firefox < 3.0.14 / 3.5.3 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
medium
40931Firefox 3.5.x < 3.5.3 Multiple VulnerabilitiesNessusWindows
high
40921RHEL 4 / 5 : firefox (RHSA-2009:1430)NessusRed Hat Local Security Checks
critical