CVE-2009-3373
Heap-based buffer overflow in the GIF image parser in Mozilla Firefox before 3.0.15 and 3.5.x before 3.5.4, and SeaMonkey before 2.0, allows remote attackers to execute arbitrary code via unspecified vectors.
- Mozilla Firefox
- = 3.0, 3.0.1, 3.0.2, 3.0.3, 3.0.4, 3.0.5, 3.0.6, 3.0.7, 3.0.8, 3.0.9, 3.0.10, 3.0.11, 3.0.12, 3.0.13, 3.0.14, 3.5.1, 3.5.2, 3.5.3
- Mozilla Seamonkey
- ≤ 1.5.0.10, 1.0, 1.0.1, 1.0.2, 1.0.3, 1.0.4, 1.0.5, 1.0.6, 1.0.7, 1.0.8, 1.0.9, 1.1, 1.1.1, 1.1.2, 1.1.3, 1.1.4, 1.1.5, 1.1.6, 1.1.7, 1.1.8, 1.1.9, 1.1.10
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 15.5% (97th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2009-10-29
CVE-2009-3373 at NVD
3 known exploits for CVE-2009-3373
Proof-of-concept code and exploit modules indexed by Sploitus