Candidate: CVE-2009-2470 PublicDate: 2009-08-04 16:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2470 http://www.mozilla.org/security/announce/2009/mfsa2009-38.html Description: Mozilla Firefox before 3.0.12, and 3.5.x before 3.5.2, allows remote SOCKS5 proxy servers to cause a denial of service (data stream corruption) via a long domain name in a reply. Ubuntu-Description: Notes: Bugs: https://bugzilla.mozilla.org/show_bug.cgi?id=459524 Priority: low Discovered-by: Assigned-to: CVSS: Patches_firefox: upstream_firefox: needs-triage dapper_firefox: ignored (reached end-of-life) hardy_firefox: not-affected intrepid_firefox: DNE jaunty_firefox: DNE karmic_firefox: DNE lucid_firefox: not-affected devel_firefox: not-affected Patches_xulrunner-1.9: upstream_xulrunner-1.9: released (1.9.0.14) dapper_xulrunner-1.9: DNE hardy_xulrunner-1.9: not-affected (1.9.0.14) intrepid_xulrunner-1.9: not-affected (1.9.0.14) jaunty_xulrunner-1.9: not-affected (1.9.0.14) karmic_xulrunner-1.9: DNE lucid_xulrunner-1.9: DNE devel_xulrunner-1.9: DNE Patches_xulrunner-1.9.1: upstream_xulrunner-1.9.1: needs-triage dapper_xulrunner-1.9.1: DNE hardy_xulrunner-1.9.1: DNE intrepid_xulrunner-1.9.1: DNE jaunty_xulrunner-1.9.1: released (1.9.1.3+build1+nobinonly-0ubuntu0.9.04.2) karmic_xulrunner-1.9.1: not-affected lucid_xulrunner-1.9.1: DNE devel_xulrunner-1.9.1: DNE