CVE-2009-2210: Critical severity mozilla seamonkey vulnerability
Mozilla Thunderbird before 2.0.0.22 and SeaMonkey before 1.1.17 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a multipart/alternative e-mail message containing a text/enhanced part that triggers access to an incorrect object type.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2210?
CVE-2009-2210 has a severity rating of moderate, as it can cause denial of service and potentially allow arbitrary code execution.
How do I fix CVE-2009-2210?
To fix CVE-2009-2210, upgrade to Mozilla Thunderbird version 2.0.0.22 or later, or SeaMonkey version 1.1.17 or later.
What versions of software are affected by CVE-2009-2210?
CVE-2009-2210 affects Mozilla Thunderbird versions prior to 2.0.0.22 and SeaMonkey versions prior to 1.1.17.
What type of vulnerability is CVE-2009-2210?
CVE-2009-2210 is a vulnerability that can cause application crashes and potentially execute arbitrary code through malformed email messages.
Is there a known exploit for CVE-2009-2210?
Yes, CVE-2009-2210 can be exploited by sending a specially crafted multipart/alternative email message that triggers access to an incorrect object type.