CVE-2009-3388Mozilla Seamonkey vulnerability

CWE-3999 documents8 sources
Severity
9.3CRITICALNVD
EPSS
2.6%
top 14.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 17
Latest updateMay 2

Description

liboggplay in Mozilla Firefox 3.5.x before 3.5.6 and SeaMonkey before 2.0.1 might allow context-dependent attackers to cause a denial of service (application crash) or execute arbitrary code via unspecified vectors, related to "memory safety issues."

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages2 packages

NVDmozilla/seamonkey2.0+35
NVDmozilla/firefox5 versions+4

Patches

🔴Vulnerability Details

3
GHSA
GHSA-gwr5-2w8p-gpfx: liboggplay in Mozilla Firefox 32022-05-02
CVEList
CVE-2009-3388: liboggplay in Mozilla Firefox 32009-12-17
OSV
CVE-2009-3388: liboggplay in Mozilla Firefox 32009-12-17

📋Vendor Advisories

4
Ubuntu
Firefox 3.5 and Xulrunner 1.9.1 regression2010-01-08
Ubuntu
Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities2009-12-18
Red Hat
liboggplay: DoS or arbitrary code execution via unspecified vectors2009-12-15
Debian
CVE-2009-3388: liboggplay - liboggplay in Mozilla Firefox 3.5.x before 3.5.6 and SeaMonkey before 2.0.1 migh...2009

💬Community

1
Bugzilla
CVE-2009-3388 liboggplay: DoS or arbitrary code execution via unspecified vectors2009-12-17
CVE-2009-3388 — Mozilla Seamonkey vulnerability | cvebase