PoC Index

CVE-2009-2464

HIGH 10.0EPSS 13.2%

The nsXULTemplateQueryProcessorRDF::CheckIsSeparator function in Mozilla Firefox before 3.0.12, SeaMonkey 2.0a1pre, and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to loading multiple RDF files in a XUL tree element.

CVSS v2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
13.23% chance of exploitation in the next 30 days, 96th percentile
Published
2009-07-22
Updated
2024-08-07

ExploitDB entries (1)

References

Related