Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-2477
Description:js/src/jstracer.cpp in the Just-in-time (JIT) JavaScript compiler (aka TraceMonkey) in Mozilla Firefox 3.5 before 3.5.1 allows remote attackers to execute arbitrary code via certain use of the escape function that triggers access to uninitialized memory locations, as originally demonstrated by a document containing P and FONT elements.
Test IDs: 1.3.6.1.4.1.25623.1.0.800843   1.3.6.1.4.1.25623.1.0.64446   1.3.6.1.4.1.25623.1.0.800844  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-2477
BugTraq ID: 35660
http://www.securityfocus.com/bid/35660
CERT/CC vulnerability note: VU#443060
http://www.kb.cert.org/vuls/id/443060
https://www.exploit-db.com/exploits/40936/
http://www.exploit-db.com/exploits/9137
http://www.exploit-db.com/exploits/9181
https://www.redhat.com/archives/fedora-package-announce/2009-July/msg00909.html
http://isc.sans.org/diary.html?storyid=6796
http://voices.washingtonpost.com/securityfix/2009/07/stopgap_fix_for_critical_firef.html
http://www.h-online.com/security/First-Zero-Day-Exploit-for-Firefox-3-5--/news/113761
http://secunia.com/advisories/35798
http://sunsolve.sun.com/search/document.do?assetkey=1-66-266148-1
http://www.vupen.com/english/advisories/2009/1868




© 1998-2025 E-Soft Inc. All rights reserved.