PublicDateAtUSN: 2009-10-29 Candidate: CVE-2009-3377 PublicDate: 2009-10-29 14:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3377 https://ubuntu.com/security/notices/USN-853-1 Description: Multiple unspecified vulnerabilities in liboggz before cf5feeaab69b05e24, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unknown vectors. Ubuntu-Description: Notes: Bugs: https://bugzilla.mozilla.org/show_bug.cgi?id=515376 Priority: low Discovered-by: Assigned-to: CVSS: Patches_firefox: upstream_firefox: needs-triage dapper_firefox: ignored (reached end-of-life) hardy_firefox: ignored (uses system xulrunner) intrepid_firefox: DNE jaunty_firefox: DNE karmic_firefox: DNE lucid_firefox: not-affected devel_firefox: not-affected Patches_xulrunner-1.9: upstream_xulrunner-1.9: released (1.9.0.15) dapper_xulrunner-1.9: DNE hardy_xulrunner-1.9: released (1.9.0.15+nobinonly-0ubuntu0.8.04.1) intrepid_xulrunner-1.9: released (1.9.0.15+nobinonly-0ubuntu0.8.10.1) jaunty_xulrunner-1.9: released (1.9.0.15+nobinonly-0ubuntu0.9.04.1) karmic_xulrunner-1.9: DNE lucid_xulrunner-1.9: DNE devel_xulrunner-1.9: DNE Patches_xulrunner-1.9.1: upstream_xulrunner-1.9.1: released (1.9.1.4) dapper_xulrunner-1.9.1: DNE hardy_xulrunner-1.9.1: DNE intrepid_xulrunner-1.9.1: DNE jaunty_xulrunner-1.9.1: released (1.9.1.4+nobinonly-0ubuntu0.9.04.3) karmic_xulrunner-1.9.1: released (1.9.1.4+nobinonly-0ubuntu0.9.10.1) lucid_xulrunner-1.9.1: DNE devel_xulrunner-1.9.1: DNE Patches_liboggz: upstream: https://github.com/kfish/liboggz/commit/164e35e743e7681fbed34c66a015a779f73176f2 upstream_liboggz: released (1.0.0) dapper_liboggz: ignored (reached end-of-life) hardy_liboggz: ignored (reached end-of-life) intrepid_liboggz: ignored (reached end-of-life) jaunty_liboggz: ignored (reached end-of-life) karmic_liboggz: ignored (reached end-of-life) lucid_liboggz: not-affected (1.1.0-2) devel_liboggz: not-affected