CVE-2009-3377: Critical severity firefox vulnerability
Published Oct 29, 2009
·Updated
Multiple unspecified vulnerabilities in liboggz before cf5feeaab69b05e24, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors.
Affected Software
4 affected components
Mozilla Firefox=3.5.3
Mozilla Firefox=3.5
Mozilla Firefox=3.5.1
Mozilla Firefox=3.5.2
Remediation
Patch Available
Event History
Oct 29, 2009
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-3377?
CVE-2009-3377 has a severity rating that indicates a potential for denial of service and possible arbitrary code execution.
2
How do I fix CVE-2009-3377?
To fix CVE-2009-3377, update Mozilla Firefox to version 3.5.4 or later.
3
What versions of Firefox are affected by CVE-2009-3377?
CVE-2009-3377 affects Mozilla Firefox versions 3.5 to 3.5.3.
4
Can CVE-2009-3377 be exploited remotely?
Yes, attackers can exploit CVE-2009-3377 remotely to cause application crashes or execute arbitrary code.
5
What is the primary impact of CVE-2009-3377?
The primary impact of CVE-2009-3377 is a denial of service, leading to application crashes in affected versions of Firefox.