Severity: : Critical
  CVE Kennungen: : CVE-2009-3073
  Advisory Date: 21 de июля de 2015

  DESCRIPTION

Unspecified vulnerability in the JavaScript engine in Mozilla Firefox 3.5.x before 3.5.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

  INFORMATION EXPOSURE

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1003737
  Trend Micro Deep Security DPI Rule Name: 1003737 - Mozilla Firefox Top-level Script Object Offset Calculation Memory Corruption

  AFFECTED SOFTWARE AND VERSION:

  • mozilla firefox 3.5
  • mozilla firefox 3.5.1
  • mozilla firefox 3.5.2