Mozilla Firefox Apple CoreGraphics整数溢出漏洞

admin 2022-07-23 13:48:50 CNNVD漏洞 来源:ZONE.CI 全球网 0 阅读模式

漏洞信息详情

Mozilla Firefox CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple CoreGraphics整数溢出漏洞

  • CNNVD编号:CNNVD-200907-324
  • 危害等级: 超危
  • CVE编号: CVE-2009-2468
  • 漏洞类型: 数字错误
  • 发布时间: 2009-05-07
  • 威胁类型: 远程
  • 更新时间: 2011-07-15
  • 厂        商: mozilla
  • 漏洞来源: Will Drewry wad@g...

漏洞简介

Mozilla Mozilla Firefox是美国Mozilla基金会开发的一款开源Web浏览器。

在Safari 4.0.3之前版本,Mozilla Firefox 3.0.12之前版本,以及Mac OS X 10.4.11和10.5.8版本中使用的CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple CoreGraphics中存在整数溢出漏洞。远程攻击者可借助超长的文本运行(字体字形渲染过程中可触发堆缓冲区溢出)导致拒绝服务(应用程序崩溃)或者可能执行任意代码。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

MandrakeSoft Linux Mandrake 2009.0 x86_64

Mandriva beagle-0.3.8-13.13mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva beagle-crawl-system-0.3.8-13.13mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva beagle-doc-0.3.8-13.13mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva beagle-epiphany-0.3.8-13.13mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva beagle-evolution-0.3.8-13.13mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva beagle-gui-0.3.8-13.13mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva beagle-gui-qt-0.3.8-13.13mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva beagle-libs-0.3.8-13.13mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva devhelp-0.21-3.8mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva devhelp-plugins-0.21-3.8mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva epiphany-2.24.0.1-3.10mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva epiphany-devel-2.24.0.1-3.10mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-af-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-ar-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-be-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-bg-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-bn-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-ca-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-cs-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-cy-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-da-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-de-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-el-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-en_GB-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-eo-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-es_AR-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-es_ES-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-et-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-eu-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-ext-beagle-0.3.8-13.13mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-ext-mozvoikko-0.9.5-4.8mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-fi-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-fr-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-fy-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-ga_IE-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-gl-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-gu_IN-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-he-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-hi-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-hu-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-id-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-is-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/download/

Mandriva Firefox-it-3.0.12-0.1mdv2009.0.x86_64.rpm

http://www.mandriva.com/en/downloa

参考网址

来源: bugzilla.mozilla.org

链接:https://bugzilla.mozilla.org/show_bug.cgi?id=480134

来源: VUPEN

名称: ADV-2009-1972

链接:http://www.vupen.com/english/advisories/2009/1972

来源: SECTRACK

名称: 1022717

链接:http://www.securitytracker.com/id?1022717

来源: BID

名称: 35758

链接:http://www.securityfocus.com/bid/35758

来源: www.mozilla.org

链接:http://www.mozilla.org/security/announce/2009/mfsa2009-36.HTML

来源: support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com

链接:http://support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/kb/HT3865

来源: support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com

链接:http://support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/kb/HT3733

来源: SUNALERT

名称: 264308

链接:http://sunsolve.sun.com/search/document.do?assetkey=1-66-264308-1

来源: SECUNIA

名称: 36701

链接:http://secunia.com/advisories/36701

来源: SECUNIA

名称: 35914

链接:http://secunia.com/advisories/35914

来源: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple

名称: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple-SA-2009-09-10-2

链接:http://lists.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/archives/security-announce/2009/Sep/msg00004.HTML

来源: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple

名称: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple-SA-2009-08-11-1

链接:http://lists.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/archives/security-announce/2009/Aug/msg00002.HTML

受影响实体


补丁

    暂无

weinxin
特别声明
本站(ZONE.CI)所有文章仅供技术研究,若将其信息做其他用途,由用户承担全部法律及连带责任,本站不承担任何法律及连带责任,请遵守中华人民共和国安全法.
评论:0   参与:  0