Red Hat Customer Portal

Skip to main content

CVE-2009-3373

Heap-based buffer overflow in the GIF image parser in Mozilla Firefox before 3.0.15 and 3.5.x before 3.5.4, and SeaMonkey before 2.0, allows remote attackers to execute arbitrary code via unspecified vectors.

Details Source

Mitre

Public Date

2009-10-27 00:00:00

Impact

Critical

Bugzilla

CVE-2009-3373 Firefox heap buffer overflow in GIF color map parser

Bugzilla ID

530 156

CVSS Status

verified

Base Score

6.80

Base Metrics

AV:N/AC:M/Au:N/C:P/I:P/A:P

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 5 RHSA-2009:1530 2009-10-27
Red Hat Enterprise Linux 4 RHSA-2009:1530 2009-10-27

CWE

CWE-122

Affected Packages State

Platform Package State
Red Hat Enterprise Linux version 5 xulrunner 1.9.0.15-3.el5_4 Fixed
Red Hat Enterprise Linux version 5 nspr 4.7.6-1.el5_4 Fixed
Red Hat Enterprise Linux version 4 nspr 4.7.6-1.el4_8 Fixed