Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.900399
Categoría:Denial of Service
Título:Mozilla Firefox Remote Code Execution Vulnerabilities July-09 (Linux)
Resumen:The host is installed with Firefox browser and is prone to Remote; Code Execution vulnerabilities.
Descripción:Summary:
The host is installed with Firefox browser and is prone to Remote
Code Execution vulnerabilities.

Vulnerability Insight:
Error exists when a page contains a Flash object which presents a slow script
dialog, and the page is navigated while the dialog is still visible to the
user, the Flash plugin is unloaded resulting in a crash due to a call to the
deleted object.

Vulnerability Impact:
Successful exploitation could allow remote attacker to execute arbitrary code
and results in Denial of Service condition.

Affected Software/OS:
Mozilla Firefox version prior to 3.0.12 and 3.5.1 on Linux.

Solution:
Upgrade to Firefox version 3.0.12 or 3.5.1 or later.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Referencia Cruzada: BugTraq ID: 35767
Common Vulnerability Exposure (CVE) ID: CVE-2009-2467
BugTraq ID: 35758
http://www.securityfocus.com/bid/35758
https://www.redhat.com/archives/fedora-package-announce/2009-July/msg01032.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10473
RedHat Security Advisories: RHSA-2009:1162
http://rhn.redhat.com/errata/RHSA-2009-1162.html
http://secunia.com/advisories/35914
http://secunia.com/advisories/35944
http://secunia.com/advisories/36005
http://secunia.com/advisories/36145
http://sunsolve.sun.com/search/document.do?assetkey=1-66-266148-1
SuSE Security Announcement: SUSE-SA:2009:039 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-07/msg00005.html
SuSE Security Announcement: SUSE-SA:2009:042 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-08/msg00002.html
http://www.vupen.com/english/advisories/2009/1972
CopyrightCopyright (C) 2009 Greenbone Networks GmbH

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.