CVE-2009-1044
CVE-2009-1044
Mozilla Firefox 3.0.7 on Windows 7 allows remote attackers to execute arbitrary code via unknown vectors related to the _moveToEdgeShift XUL tree method, which triggers garbage collection on objects that are still in use, as demonstrated by Nils during a PWN2OWN competition at CanSecWest 2009.
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://blogs.zdnet.com/security/?p=2934http://blogs.zdnet.com/security/?p=2941http://cansecwest.com/index.htmlhttp://dvlabs.tippingpoint.com/blog/2009/02/25/pwn2own-2009http://dvlabs.tippingpoint.com/blog/2009/03/18/pwn2own-2009-day-1---safari-internet-explorer-and-firefox-taken-down-by-four-zero-day-exploitshttp://lists.opensuse.org/opensuse-security-announce/2009-04/msg00008.htmlhttp://news.cnet.com/8301-1009_3-10199652-83.htmlhttp://osvdb.org/52896https://bugzilla.mozilla.org/show_bug.cgi?id=484320http://secunia.com/advisories/34471http://secunia.com/advisories/34505http://secunia.com/advisories/34510