Vulnerability Database

296,594

Total vulnerabilities in the database

CVE-2009-1044

Mozilla Firefox 3.0.7 on Windows 7 allows remote attackers to execute arbitrary code via unknown vectors related to the _moveToEdgeShift XUL tree method, which triggers garbage collection on objects that are still in use, as demonstrated by Nils during a PWN2OWN competition at CanSecWest 2009.

  • Published: Mar 23, 2009
  • Updated: Apr 13, 2023
  • CVE: CVE-2009-1044
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 9.3
  • AV:N/AC:M/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
mozilla / firefox 3.0.7 3.0.7.x