CVE-2009-3389

Impact:
Moderate
Public Date:
2009-12-15
Bugzilla:
548541: CVE-2009-3389 libtheora: DoS or arbitrary code execution via a video with large dimensions

The MITRE CVE dictionary describes this issue as:

Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used in Mozilla Firefox 3.5 before 3.5.6 and SeaMonkey before 2.0.1, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a video with large dimensions.

Find out more about CVE-2009-3389 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

Not vulnerable. This issue did not affect the versions of libtheora as shipped with Red Hat Enterprise Linux 4, or 5.

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.