CVE-2009-1392

CVSS v2.0 9.3 (High)
93% Progress
EPSS 94.07 % (99th)
94.07% Progress
Affected Products 3
Advisories 7

The browser engine in Mozilla Firefox 3 before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to (1) nsEventStateManager::GetContentState and nsNativeTheme::CheckBooleanAttr; (2) UnhookTextRunFromFrames and ClearAllTextRunReferences; (3) nsTextFrame::ClearTextRun; (4) IsPercentageAware; (5) PL_DHashTableFinish; (6) nsListBoxBodyFrame::GetNextItemBox; (7) AtomTableClearEntry, related to the atom table, DOM mutation events, and Unicode surrogates; (8) nsHTMLEditor::HideResizers; and (9) nsWindow::SetCursor, related to changing the cursor; and other vectors.

Weaknesses
CWE-94
Improper Control of Generation of Code ('Code Injection')
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2009-06-12 21:30:00
(15 years ago)
Updated Date
2018-10-30 16:25:58
(5 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox 3.0 cpe:2.3:a:mozilla:firefox:3.0
  Mozilla Firefox 3.0 Alpha cpe:2.3:a:mozilla:firefox:3.0:alpha
  Mozilla Firefox 3.0 Beta2 cpe:2.3:a:mozilla:firefox:3.0:beta2
  Mozilla Firefox 3.0.1 cpe:2.3:a:mozilla:firefox:3.0.1
  Mozilla Firefox 3.0.2 cpe:2.3:a:mozilla:firefox:3.0.2
  Mozilla Firefox 3.0.3 cpe:2.3:a:mozilla:firefox:3.0.3
  Mozilla Firefox 3.0.4 cpe:2.3:a:mozilla:firefox:3.0.4
  Mozilla Firefox 3.0.5 cpe:2.3:a:mozilla:firefox:3.0.5
  Mozilla Firefox 3.0.6 cpe:2.3:a:mozilla:firefox:3.0.6
  Mozilla Firefox 3.0.7 cpe:2.3:a:mozilla:firefox:3.0.7
  Mozilla Firefox 3.0.8 cpe:2.3:a:mozilla:firefox:3.0.8
  Mozilla Firefox 3.0.9 cpe:2.3:a:mozilla:firefox:3.0.9
  Mozilla Firefox 3.0.10 cpe:2.3:a:mozilla:firefox:3.0.10
  Mozilla Seamonkey 1.1.16 and prior versions cpe:2.3:a:mozilla:seamonkey <= 1.1.16
  Mozilla Seamonkey 1.0 cpe:2.3:a:mozilla:seamonkey:1.0
  Mozilla Seamonkey 1.0 Alpha Edition cpe:2.3:a:mozilla:seamonkey:1.0:*:alpha
  Mozilla Seamonkey 1.0 Beta Edition cpe:2.3:a:mozilla:seamonkey:1.0:*:beta
  Mozilla Seamonkey 1.0 Dev Edition cpe:2.3:a:mozilla:seamonkey:1.0:*:dev
  Mozilla Seamonkey 1.0 Alpha cpe:2.3:a:mozilla:seamonkey:1.0:alpha
  Mozilla Seamonkey 1.0 Beta cpe:2.3:a:mozilla:seamonkey:1.0:beta
  Mozilla Seamonkey 1.0.1 cpe:2.3:a:mozilla:seamonkey:1.0.1
  Mozilla Seamonkey 1.0.3 cpe:2.3:a:mozilla:seamonkey:1.0.3
  Mozilla Seamonkey 1.0.4 cpe:2.3:a:mozilla:seamonkey:1.0.4
  Mozilla Seamonkey 1.0.6 cpe:2.3:a:mozilla:seamonkey:1.0.6
  Mozilla Seamonkey 1.0.8 cpe:2.3:a:mozilla:seamonkey:1.0.8
  Mozilla Seamonkey 1.0.9 cpe:2.3:a:mozilla:seamonkey:1.0.9
  Mozilla Seamonkey 1.0.99 cpe:2.3:a:mozilla:seamonkey:1.0.99
  Mozilla Seamonkey 1.1 cpe:2.3:a:mozilla:seamonkey:1.1
  Mozilla Seamonkey 1.1 Alpha cpe:2.3:a:mozilla:seamonkey:1.1:alpha
  Mozilla Seamonkey 1.1 Beta cpe:2.3:a:mozilla:seamonkey:1.1:beta
  Mozilla Seamonkey 1.1.1 cpe:2.3:a:mozilla:seamonkey:1.1.1
  Mozilla Seamonkey 1.1.3 cpe:2.3:a:mozilla:seamonkey:1.1.3
  Mozilla Seamonkey 1.1.5 cpe:2.3:a:mozilla:seamonkey:1.1.5
  Mozilla Seamonkey 1.1.5 1.1.10 cpe:2.3:a:mozilla:seamonkey:1.1.5:1.1.10
  Mozilla Seamonkey 1.1.6 cpe:2.3:a:mozilla:seamonkey:1.1.6
  Mozilla Seamonkey 1.1.7 cpe:2.3:a:mozilla:seamonkey:1.1.7
  Mozilla Seamonkey 1.1.8 cpe:2.3:a:mozilla:seamonkey:1.1.8
  Mozilla Seamonkey 1.1.9 cpe:2.3:a:mozilla:seamonkey:1.1.9
  Mozilla Seamonkey 1.1.10 cpe:2.3:a:mozilla:seamonkey:1.1.10
  Mozilla Seamonkey 1.1.11 cpe:2.3:a:mozilla:seamonkey:1.1.11
  Mozilla Seamonkey 1.1.12 cpe:2.3:a:mozilla:seamonkey:1.1.12
  Mozilla Seamonkey 1.1.13 cpe:2.3:a:mozilla:seamonkey:1.1.13
  Mozilla Seamonkey 1.1.15 cpe:2.3:a:mozilla:seamonkey:1.1.15
  Mozilla Thunderbird 2.0.0.19 and prior versions cpe:2.3:a:mozilla:thunderbird <= 2.0.0.19
  Mozilla Thunderbird 0.1 cpe:2.3:a:mozilla:thunderbird:0.1
  Mozilla Thunderbird 0.2 cpe:2.3:a:mozilla:thunderbird:0.2
  Mozilla Thunderbird 0.3 cpe:2.3:a:mozilla:thunderbird:0.3
  Mozilla Thunderbird 0.4 cpe:2.3:a:mozilla:thunderbird:0.4
  Mozilla Thunderbird 0.5 cpe:2.3:a:mozilla:thunderbird:0.5
  Mozilla Thunderbird 0.6 cpe:2.3:a:mozilla:thunderbird:0.6
  Mozilla Thunderbird 0.7 cpe:2.3:a:mozilla:thunderbird:0.7
  Mozilla Thunderbird 0.7.1 cpe:2.3:a:mozilla:thunderbird:0.7.1
  Mozilla Thunderbird 0.7.2 cpe:2.3:a:mozilla:thunderbird:0.7.2
  Mozilla Thunderbird 0.7.3 cpe:2.3:a:mozilla:thunderbird:0.7.3
  Mozilla Thunderbird 0.8 cpe:2.3:a:mozilla:thunderbird:0.8
  Mozilla Thunderbird 0.9 cpe:2.3:a:mozilla:thunderbird:0.9
  Mozilla Thunderbird 1.0 cpe:2.3:a:mozilla:thunderbird:1.0
  Mozilla Thunderbird 1.0.1 cpe:2.3:a:mozilla:thunderbird:1.0.1
  Mozilla Thunderbird 1.0.2 cpe:2.3:a:mozilla:thunderbird:1.0.2
  Mozilla Thunderbird 1.0.3 cpe:2.3:a:mozilla:thunderbird:1.0.3
  Mozilla Thunderbird 1.0.4 cpe:2.3:a:mozilla:thunderbird:1.0.4
  Mozilla Thunderbird 1.0.5 cpe:2.3:a:mozilla:thunderbird:1.0.5
  Mozilla Thunderbird 1.0.5 Beta cpe:2.3:a:mozilla:thunderbird:1.0.5:beta
  Mozilla Thunderbird 1.0.6 cpe:2.3:a:mozilla:thunderbird:1.0.6
  Mozilla Thunderbird 1.0.7 cpe:2.3:a:mozilla:thunderbird:1.0.7
  Mozilla Thunderbird 1.0.8 cpe:2.3:a:mozilla:thunderbird:1.0.8
  Mozilla Thunderbird 1.5 cpe:2.3:a:mozilla:thunderbird:1.5
  Mozilla Thunderbird 1.5 Beta2 cpe:2.3:a:mozilla:thunderbird:1.5:beta2
  Mozilla Thunderbird 1.5.0.1 cpe:2.3:a:mozilla:thunderbird:1.5.0.1
  Mozilla Thunderbird 1.5.0.2 cpe:2.3:a:mozilla:thunderbird:1.5.0.2
  Mozilla Thunderbird 1.5.0.3 cpe:2.3:a:mozilla:thunderbird:1.5.0.3
  Mozilla Thunderbird 1.5.0.4 cpe:2.3:a:mozilla:thunderbird:1.5.0.4
  Mozilla Thunderbird 1.5.0.5 cpe:2.3:a:mozilla:thunderbird:1.5.0.5
  Mozilla Thunderbird 1.5.0.6 cpe:2.3:a:mozilla:thunderbird:1.5.0.6
  Mozilla Thunderbird 1.5.0.7 cpe:2.3:a:mozilla:thunderbird:1.5.0.7
  Mozilla Thunderbird 1.5.0.8 cpe:2.3:a:mozilla:thunderbird:1.5.0.8
  Mozilla Thunderbird 1.5.0.9 cpe:2.3:a:mozilla:thunderbird:1.5.0.9
  Mozilla Thunderbird 1.5.0.10 cpe:2.3:a:mozilla:thunderbird:1.5.0.10
  Mozilla Thunderbird 1.5.0.11 cpe:2.3:a:mozilla:thunderbird:1.5.0.11
  Mozilla Thunderbird 1.5.0.12 cpe:2.3:a:mozilla:thunderbird:1.5.0.12
  Mozilla Thunderbird 1.5.0.13 cpe:2.3:a:mozilla:thunderbird:1.5.0.13
  Mozilla Thunderbird 1.5.0.14 cpe:2.3:a:mozilla:thunderbird:1.5.0.14
  Mozilla Thunderbird 1.5.1 cpe:2.3:a:mozilla:thunderbird:1.5.1
  Mozilla Thunderbird 1.5.2 cpe:2.3:a:mozilla:thunderbird:1.5.2
  Mozilla Thunderbird 1.7.1 cpe:2.3:a:mozilla:thunderbird:1.7.1
  Mozilla Thunderbird 1.7.3 cpe:2.3:a:mozilla:thunderbird:1.7.3
  Mozilla Thunderbird 2.0.0.0 cpe:2.3:a:mozilla:thunderbird:2.0.0.0
  Mozilla Thunderbird 2.0.0.1 cpe:2.3:a:mozilla:thunderbird:2.0.0.1
  Mozilla Thunderbird 2.0.0.2 cpe:2.3:a:mozilla:thunderbird:2.0.0.2
  Mozilla Thunderbird 2.0.0.3 cpe:2.3:a:mozilla:thunderbird:2.0.0.3
  Mozilla Thunderbird 2.0.0.4 cpe:2.3:a:mozilla:thunderbird:2.0.0.4
  Mozilla Thunderbird 2.0.0.5 cpe:2.3:a:mozilla:thunderbird:2.0.0.5
  Mozilla Thunderbird 2.0.0.6 cpe:2.3:a:mozilla:thunderbird:2.0.0.6
  Mozilla Thunderbird 2.0.0.7 cpe:2.3:a:mozilla:thunderbird:2.0.0.7
  Mozilla Thunderbird 2.0.0.8 cpe:2.3:a:mozilla:thunderbird:2.0.0.8
  Mozilla Thunderbird 2.0.0.9 cpe:2.3:a:mozilla:thunderbird:2.0.0.9
  Mozilla Thunderbird 2.0.0.11 cpe:2.3:a:mozilla:thunderbird:2.0.0.11
  Mozilla Thunderbird 2.0.0.12 cpe:2.3:a:mozilla:thunderbird:2.0.0.12
  Mozilla Thunderbird 2.0.0.13 cpe:2.3:a:mozilla:thunderbird:2.0.0.13
  Mozilla Thunderbird 2.0.0.14 cpe:2.3:a:mozilla:thunderbird:2.0.0.14
  Mozilla Thunderbird 2.0.0.15 cpe:2.3:a:mozilla:thunderbird:2.0.0.15
  Mozilla Thunderbird 2.0.0.16 cpe:2.3:a:mozilla:thunderbird:2.0.0.16
  Mozilla Thunderbird 2.0.0.17 cpe:2.3:a:mozilla:thunderbird:2.0.0.17
  Mozilla Thunderbird 2.0.0.18 cpe:2.3:a:mozilla:thunderbird:2.0.0.18
  Mozilla Thunderbird 2.0 .4 cpe:2.3:a:mozilla:thunderbird:2.0_.4
  Mozilla Thunderbird 2.0 .5 cpe:2.3:a:mozilla:thunderbird:2.0_.5
  Mozilla Thunderbird 2.0 .6 cpe:2.3:a:mozilla:thunderbird:2.0_.6
  Mozilla Thunderbird 2.0 .9 cpe:2.3:a:mozilla:thunderbird:2.0_.9
  Mozilla Thunderbird 2.0 .12 cpe:2.3:a:mozilla:thunderbird:2.0_.12
  Mozilla Thunderbird 2.0 .13 cpe:2.3:a:mozilla:thunderbird:2.0_.13
  Mozilla Thunderbird 2.0 .14 cpe:2.3:a:mozilla:thunderbird:2.0_.14
  Mozilla Thunderbird 2.0 8 cpe:2.3:a:mozilla:thunderbird:2.0_8
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...