Your submission was sent successfully! Close

CVE-2008-4324

Published: 29 September 2008

The user interface event dispatcher in Mozilla Firefox 3.0.3 on Windows XP SP2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a series of keypress, click, onkeydown, onkeyup, onmousedown, and onmouseup events. NOTE: it was later reported that Firefox 3.0.2 on Mac OS X 10.5 is also affected.

Priority

Negligible

Status

Package Release Status
firefox
Launchpad, Ubuntu, Debian
dapper Ignored

feisty Ignored

gutsy Ignored

hardy Ignored

intrepid Does not exist

upstream Needs triage

firefox-3.0
Launchpad, Ubuntu, Debian
dapper Does not exist

feisty Does not exist

gutsy Ignored

hardy Ignored

intrepid Ignored

upstream Needs triage

iceape
Launchpad, Ubuntu, Debian
dapper Does not exist

feisty Does not exist

gutsy Ignored

hardy Does not exist

intrepid Does not exist

upstream Needs triage

icedove
Launchpad, Ubuntu, Debian
dapper Does not exist

feisty Does not exist

gutsy Does not exist

hardy Does not exist

intrepid Does not exist

upstream Needs triage

iceweasel
Launchpad, Ubuntu, Debian
dapper Does not exist

feisty Does not exist

gutsy Does not exist

hardy Does not exist

intrepid Does not exist

upstream Needs triage

mozilla-thunderbird
Launchpad, Ubuntu, Debian
dapper Ignored

feisty Ignored

gutsy Does not exist

hardy Does not exist

intrepid Does not exist

upstream Needs triage

seamonkey
Launchpad, Ubuntu, Debian
dapper Does not exist

feisty Does not exist

gutsy Does not exist

hardy Ignored

intrepid Ignored

upstream Needs triage

thunderbird
Launchpad, Ubuntu, Debian
dapper Does not exist

feisty Does not exist

gutsy Ignored

hardy Ignored

intrepid Ignored

upstream Needs triage

xulrunner
Launchpad, Ubuntu, Debian
dapper Does not exist

feisty Ignored

gutsy Ignored

hardy Ignored

intrepid Ignored

upstream Needs triage

xulrunner-1.9
Launchpad, Ubuntu, Debian
dapper Does not exist

feisty Does not exist

gutsy Ignored

hardy Ignored

intrepid Ignored

upstream Needs triage

Notes

AuthorNote
kees
not treated as a security issue: browser crash-only

References