CVE-2009-2465: Critical severity firefox vulnerability
Mozilla Firefox before 3.0.12 and Thunderbird allow remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via vectors involving double frame construction, related to (1) nsHTMLContentSink.cpp, (2) nsXMLContentSink.cpp, and (3) nsPresShell.cpp, and the nsSubDocumentFrame::Reflow function.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2009-2465?
CVE-2009-2465 has a high severity level due to its potential to cause denial of service or execute arbitrary code.
How do I fix CVE-2009-2465?
To fix CVE-2009-2465, update Mozilla Firefox to version 3.0.12 or later and Thunderbird to the latest available version.
Which versions are affected by CVE-2009-2465?
CVE-2009-2465 affects multiple versions of Mozilla Firefox prior to 3.0.12 and several versions of Thunderbird.
What type of vulnerability is CVE-2009-2465?
CVE-2009-2465 is a vulnerability that enables remote attackers to cause memory corruption and application crashes.
What are the potential impacts of CVE-2009-2465?
The potential impacts of CVE-2009-2465 include application crashes and the execution of arbitrary code by remote attackers.