CVE-2009-1169
Publication date 27 March 2009
Last updated 24 July 2024
Ubuntu priority
The txMozillaXSLTProcessor::TransformToDoc function in Mozilla Firefox before 3.0.8 and SeaMonkey before 1.1.16 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an XML file with a crafted XSLT transform.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | ||
iceape | ||
seamonkey | ||
xulrunner | ||
xulrunner-1.9 | ||
xulrunner-1.9.1 | ||
Notes
kees
very late in the day announcement http://blog.mozilla.com/blog/2009/03/27/firefox-308-security-release-now-available/