CVE-2009-3389
published 2009-12-17CVE-2009-3389: Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to…
PriorityP337critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
4.78%
90.9th percentile
Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.
Affected
42 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libtheora | < libtheora 1.1 (bookworm) | libtheora 1.1 (bookworm) |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | seamonkey | <= 2.0 | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vendor_debian9.3CRITICAL
vendor_redhat9.3CRITICAL
vendor_ubuntu9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vvqg-rc4c-3qfj: Integer overflow in libtheora in Xiph
ghsa_unreviewed·2022-05-02
CVE-2009-3389 [HIGH] GHSA-vvqg-rc4c-3qfj: Integer overflow in libtheora in Xiph
Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.
OSV
CVE-2009-3389: Integer overflow in libtheora in Xiph
osv·2009-12-17·CVSS 9.3
CVE-2009-3389 [CRITICAL] CVE-2009-3389: Integer overflow in libtheora in Xiph
Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.
Ubuntu
Firefox 3.5 and Xulrunner 1.9.1 regression
vendor_ubuntu·2010-01-08·CVSS 9.3
[CRITICAL] Firefox 3.5 and Xulrunner 1.9.1 regression
Title: Firefox 3.5 and Xulrunner 1.9.1 regression
Summary: Firefox 3.5 and Xulrunner 1.9.1 regression
USN-874-1 fixed vulnerabilities in Firefox and Xulrunner. The upstream
changes introduced a regression when using NTLM authentication. This update
fixes the problem and adds additional stability fixes.
We apologize for the inconvenience.
Original advisory details:
Jesse Ruderman, Josh Soref, Martijn Wargers, Jose Angel, Olli Pettay, and
David James discovered several flaws in the browser and JavaScript engines
of Firefox. If a user were tricked into viewing a malicious website, a
remote attacker could cause a denial of service or possibly execute
arbitrary code with the privileges of the user invoking the program.
(CVE-2009-3979, CVE-2009-3980, CVE-2009-3982, CVE-2009-3986)
Takehiro T
Ubuntu
Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities
vendor_ubuntu·2009-12-18·CVSS 9.3
CVE-2009-3979 [CRITICAL] Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities
Title: Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities
Summary: Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities
Jesse Ruderman, Josh Soref, Martijn Wargers, Jose Angel, Olli Pettay, and
David James discovered several flaws in the browser and JavaScript engines
of Firefox. If a user were tricked into viewing a malicious website, a
remote attacker could cause a denial of service or possibly execute
arbitrary code with the privileges of the user invoking the program.
(CVE-2009-3979, CVE-2009-3980, CVE-2009-3982, CVE-2009-3986)
Takehiro Takahashi discovered flaws in the NTLM implementation in Firefox.
If an NTLM authenticated user visited a malicious website, a remote
attacker could send requests to other applications, authenticated as the
user. (CVE-2009-3983)
Jonathan Morgan discovered t
Red Hat
libtheora: DoS or arbitrary code execution via a video with large dimensions
vendor_redhat·2009-12-15·CVSS 9.3
CVE-2009-3389 [CRITICAL] libtheora: DoS or arbitrary code execution via a video with large dimensions
libtheora: DoS or arbitrary code execution via a video with large dimensions
Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.
Statement: Not vulnerable. This issue did not affect the versions of libtheora as shipped with Red Hat Enterprise Linux 4, or 5.
Debian
CVE-2009-3389: libtheora - Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla ...
vendor_debian·2009·CVSS 9.3
CVE-2009-3389 [CRITICAL] CVE-2009-3389: libtheora - Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla ...
Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.
Scope: local
bookworm: resolved (fixed in 1.1)
bullseye: resolved (fixed in 1.1)
forky: resolved (fixed in 1.1)
sid: resolved (fixed in 1.1)
trixie: resolved (fixed in 1.1)
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/37699http://secunia.com/advisories/37785http://secunia.com/advisories/37856http://secunia.com/advisories/37881http://secunia.com/advisories/39317http://www.mandriva.com/security/advisories?name=MDVSA-2010:043http://www.mozilla.org/security/announce/2009/mfsa2009-67.htmlhttp://www.novell.com/linux/security/advisories/2009_63_firefox.htmlhttp://www.securityfocus.com/bid/37349http://www.securityfocus.com/bid/37368http://www.theora.org/news/#libtheora-1.1.0http://www.ubuntu.com/usn/USN-874-1http://www.vupen.com/english/advisories/2009/3547https://bugzilla.mozilla.org/show_bug.cgi?id=504613https://bugzilla.mozilla.org/show_bug.cgi?id=515882https://exchange.xforce.ibmcloud.com/vulnerabilities/54805https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7967https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00995.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-December/msg01034.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-December/msg01041.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-04/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/37699http://secunia.com/advisories/37785http://secunia.com/advisories/37856http://secunia.com/advisories/37881http://secunia.com/advisories/39317http://www.mandriva.com/security/advisories?name=MDVSA-2010:043http://www.mozilla.org/security/announce/2009/mfsa2009-67.htmlhttp://www.novell.com/linux/security/advisories/2009_63_firefox.htmlhttp://www.securityfocus.com/bid/37349http://www.securityfocus.com/bid/37368http://www.theora.org/news/#libtheora-1.1.0http://www.ubuntu.com/usn/USN-874-1http://www.vupen.com/english/advisories/2009/3547https://bugzilla.mozilla.org/show_bug.cgi?id=504613https://bugzilla.mozilla.org/show_bug.cgi?id=515882https://exchange.xforce.ibmcloud.com/vulnerabilities/54805https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7967https://www.redhat.com/archives/fedora-package-announce/2009-December/msg00995.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-December/msg01034.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-December/msg01041.html
2009-12-17
Published