CVE-2009-1837

Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp in xul.dll in Mozilla Firefox 3 before 3.0.11 might allow remote attackers to execute arbitrary code via a page transition during Java applet loading, related to a use-after-free vulnerability for memory associated with a destroyed Java object.
Race Condition
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 83%
VendorProductVersion
mozillafirefox
3.0 ≤
𝑥
< 3.0.11
debiandebian_linux
5.0
redhatenterprise_linux
4.0
redhatenterprise_linux
5.0
redhatenterprise_linux_desktop
4.0
redhatenterprise_linux_desktop
5.0
redhatenterprise_linux_eus
4.8
redhatenterprise_linux_eus
5.3
redhatenterprise_linux_server
4.0
redhatenterprise_linux_server
5.0
redhatenterprise_linux_server_aus
5.3
redhatenterprise_linux_workstation
4.0
redhatenterprise_linux_workstation
5.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
firefox
karmic
dne
jaunty
dne
intrepid
dne
hardy
not-affected
dapper
ignored
xulrunner-1.9
karmic
dne
jaunty
Fixed 1.9.0.11+build2+nobinonly-0ubuntu0.9.04.1
released
intrepid
Fixed 1.9.0.11+build2+nobinonly-0ubuntu0.8.10.2
released
hardy
Fixed 1.9.0.11+build2+nobinonly-0ubuntu0.8.04.1
released
dapper
dne
xulrunner-1.9.1
karmic
Fixed 1.9.1~rc2+nobinonly-0ubuntu1
released
jaunty
Fixed 1.9.1+nobinonly-0ubuntu0.9.04.1
released
intrepid
dne
hardy
dne
dapper
dne
References