CVE-2009-0352

Publication date 4 February 2009

Last updated 24 July 2024


Ubuntu priority

Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before 3.0.6, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the layout engine and destruction of arbitrary layout objects by the nsViewManager::Composite function.

Status

Package Ubuntu Release Status
firefox 10.04 LTS lucid
Not affected
9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy
Not affected
7.10 gutsy
Not affected
6.06 LTS dapper
Not affected
firefox-3.0 10.04 LTS lucid Not in release
9.10 karmic Not in release
9.04 jaunty
Fixed 3.0.6+nobinonly-0ubuntu1
8.10 intrepid
Fixed 3.0.6+nobinonly-0ubuntu0.8.10.1
8.04 LTS hardy
Fixed 3.0.6+nobinonly-0ubuntu0.8.04.1
7.10 gutsy Ignored end of life, was needed
6.06 LTS dapper Not in release
iceape 10.04 LTS lucid Not in release
9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy Ignored end of life, was needed
6.06 LTS dapper Not in release
icedove 10.04 LTS lucid Not in release
9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy Not in release
6.06 LTS dapper Not in release
iceweasel 10.04 LTS lucid Not in release
9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy Not in release
6.06 LTS dapper Not in release
mozilla-thunderbird 10.04 LTS lucid Not in release
9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy Not in release
6.06 LTS dapper
Fixed 1.5.0.13+1.5.0.15~prepatch080614k-0ubuntu0.6.06.1
seamonkey 10.04 LTS lucid
Not affected
9.10 karmic
Not affected
9.04 jaunty
Not affected
8.10 intrepid Ignored end of life, was needed
8.04 LTS hardy
Fixed 2.0.8+build1+nobinonly-0ubuntu0.8.04.1
7.10 gutsy Not in release
6.06 LTS dapper Not in release
thunderbird 10.04 LTS lucid
Fixed 2.0.0.21+nobinonly-0ubuntu1
9.10 karmic
Fixed 2.0.0.21+nobinonly-0ubuntu1
9.04 jaunty
Fixed 2.0.0.21+nobinonly-0ubuntu1
8.10 intrepid
Fixed 2.0.0.21+nobinonly-0ubuntu0.8.10.1
8.04 LTS hardy
Fixed 2.0.0.21+nobinonly-0ubuntu0.8.04.1
7.10 gutsy
Fixed 2.0.0.21+nobinonly-0ubuntu0.7.10.1
6.06 LTS dapper Not in release
xulrunner 10.04 LTS lucid Not in release
9.10 karmic
Not affected
9.04 jaunty
Not affected
8.10 intrepid
Not affected
8.04 LTS hardy
Not affected
7.10 gutsy
Not affected
6.06 LTS dapper Not in release
xulrunner-1.9 10.04 LTS lucid Not in release
9.10 karmic Not in release
9.04 jaunty
Fixed 1.9.0.6+nobinonly-0ubuntu1
8.10 intrepid
Fixed 1.9.0.6+nobinonly-0ubuntu0.8.10.1
8.04 LTS hardy
Fixed 1.9.0.6+nobinonly-0ubuntu0.8.04.1
7.10 gutsy Ignored end of life, was needed
6.06 LTS dapper Not in release

References

Related Ubuntu Security Notices (USN)

    • USN-741-1
    • Thunderbird vulnerabilities
    • 19 March 2009
    • USN-717-1
    • Firefox and Xulrunner vulnerabilities
    • 10 February 2009

Other references