CVE-2009-0689
Array index error in the (1) dtoa implementation in dtoa.c (aka pdtoa.c) and the (2) gdtoa (aka new dtoa) implementation in gdtoa/misc.c in libc, as used in multiple operating systems and products including in FreeBSD 6.4 and 7.2, NetBSD 5.0, OpenBSD 4.5, Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4, K-Meleon 1.5.3, SeaMonkey 1.1.8, and other products, allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a large precision value in the format argument to a printf function, which triggers incorrect memory allocation and a heap-based buffer overflow during conversion to a floating-point number.
- Affected products
- Mono, Red Hat, Suse, Kdelibs, Kdelibs-Data, Kdelibs-Dbg, Kdelibs4-Dev, Kdelibs4-Doc
- K-meleon Project K-meleon
- = 1.5.3
- Mozilla Firefox
- = 3.0.1, 3.0.2, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.0.7, 3.0.8, 3.0.9, 3.0.10, 3.0.11, 3.0.12, 3.0.13, 3.0.14, 3.5, 3.5.1, 3.5.2, 3.5.3
- Mozilla Seamonkey
- = 1.1.8
- Freebsd
- = 6.4, 7.2
- Netbsd
- = 5.0
- Openbsd
- = 4.5
- Fix
- Available
- CVSS 2.0
- 6.8 MEDIUM
- EPSS
- 28.1% (98th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2009-07-01
48 known exploits for CVE-2009-0689
Proof-of-concept code and exploit modules indexed by Sploitus