CVE-2009-1302: Medium severity mozilla seamonkey vulnerability
The browser engine in Mozilla Firefox 3.x before 3.0.9, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.16 allows remote attackers to cause a denial of service (application crash) and possibly trigger memory corruption via vectors related to (1) nsAsyncInstantiateEvent::Run, (2) nsStyleContext::Destroy, (3) nsComputedDOMStyle::GetWidth, (4) the xsltattributesetImportSameName.html test case for the XSLT stylesheet compiler, (5) nsXULDocument::SynchronizeBroadcastListener, (6) IsBindingAncestor, (7) PLDHashTableOperate and nsEditor::EndUpdateViewBatch, and (8) gfxSkipCharsIterator::SetOffsets, and other vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2009-1302?
CVE-2009-1302 has been classified as a high-severity vulnerability due to its potential to cause application crashes and memory corruption.
How do I fix CVE-2009-1302?
To fix CVE-2009-1302, users should upgrade Mozilla Firefox to version 3.0.9 or higher, Thunderbird to version 2.0.0.22 or higher, or SeaMonkey to version 1.1.16 or higher.
What applications are affected by CVE-2009-1302?
CVE-2009-1302 affects Mozilla Firefox versions prior to 3.0.9, Thunderbird versions prior to 2.0.0.22, and SeaMonkey versions prior to 1.1.16.
What type of vulnerability is CVE-2009-1302?
CVE-2009-1302 is a denial of service vulnerability that can potentially lead to application crashes and memory corruption.
Are there any indicators of compromise for CVE-2009-1302?
Indicators of compromise for CVE-2009-1302 may include unexpected application crashes or unusual memory behavior while using the affected software.