CyberSec.Space Logo
Back to CVE Browser

CVE-2009-2471

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.1380%
EPSS Percentile6.30th
PublishedJul 22, 2009
Last ModifiedApr 23, 2026

Vulnerability Description

The setTimeout function in Mozilla Firefox before 3.0.12 does not properly preserve object wrapping, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via a crafted call, related to XPCNativeWrapper.

Affected Platforms (CPE)

📦
Mozilla

Firefox

<= 3.0.11
📦
Mozilla

Firefox

= 0.1
📦
Mozilla

Firefox

= 0.2
📦
Mozilla

Firefox

= 0.3
📦
Mozilla

Firefox

= 0.4
📦
Mozilla

Firefox

= 0.5
📦
Mozilla

Firefox

= 0.6
📦
Mozilla

Firefox

= 0.6.1
📦
Mozilla

Firefox

= 0.7
📦
Mozilla

Firefox

= 0.7.1
📦
Mozilla

Firefox

= 0.8
📦
Mozilla

Firefox

= 0.9
📦
Mozilla

Firefox

= 0.9
📦
Mozilla

Firefox

= 0.9.1
📦
Mozilla

Firefox

= 0.9.2
📦
Mozilla

Firefox

= 0.9.3
📦
Mozilla

Firefox

= 0.9_rc
📦
Mozilla

Firefox

= 0.10
📦
Mozilla

Firefox

= 0.10.1
📦
Mozilla

Firefox

= 1.0
📦
Mozilla

Firefox

= 1.0
📦
Mozilla

Firefox

= 1.0.1
📦
Mozilla

Firefox

= 1.0.2
📦
Mozilla

Firefox

= 1.0.3
📦
Mozilla

Firefox

= 1.0.4
📦
Mozilla

Firefox

= 1.0.5
📦
Mozilla

Firefox

= 1.0.6
📦
Mozilla

Firefox

= 1.0.6
📦
Mozilla

Firefox

= 1.0.7
📦
Mozilla

Firefox

= 1.0.8
📦
Mozilla

Firefox

= 1.4.1
📦
Mozilla

Firefox

= 1.5
📦
Mozilla

Firefox

= 1.5
📦
Mozilla

Firefox

= 1.5
📦
Mozilla

Firefox

= 1.5.0.1
📦
Mozilla

Firefox

= 1.5.0.2
📦
Mozilla

Firefox

= 1.5.0.3
📦
Mozilla

Firefox

= 1.5.0.4
📦
Mozilla

Firefox

= 1.5.0.5
📦
Mozilla

Firefox

= 1.5.0.6
📦
Mozilla

Firefox

= 1.5.0.7
📦
Mozilla

Firefox

= 1.5.0.8
📦
Mozilla

Firefox

= 1.5.0.9
📦
Mozilla

Firefox

= 1.5.0.10
📦
Mozilla

Firefox

= 1.5.0.11
📦
Mozilla

Firefox

= 1.5.0.12
📦
Mozilla

Firefox

= 1.5.1
📦
Mozilla

Firefox

= 1.5.2
📦
Mozilla

Firefox

= 1.5.3
📦
Mozilla

Firefox

= 1.5.4
📦
Mozilla

Firefox

= 1.5.5
📦
Mozilla

Firefox

= 1.5.6
📦
Mozilla

Firefox

= 1.5.7
📦
Mozilla

Firefox

= 1.5.8
📦
Mozilla

Firefox

= 1.8
📦
Mozilla

Firefox

= 2.0
📦
Mozilla

Firefox

= 2.0
📦
Mozilla

Firefox

= 2.0
📦
Mozilla

Firefox

= 2.0
📦
Mozilla

Firefox

= 2.0
📦
Mozilla

Firefox

= 2.0.0.1
📦
Mozilla

Firefox

= 2.0.0.2
📦
Mozilla

Firefox

= 2.0.0.3
📦
Mozilla

Firefox

= 2.0.0.4
📦
Mozilla

Firefox

= 2.0.0.5
📦
Mozilla

Firefox

= 2.0.0.6
📦
Mozilla

Firefox

= 2.0.0.7
📦
Mozilla

Firefox

= 2.0.0.8
📦
Mozilla

Firefox

= 2.0.0.9
📦
Mozilla

Firefox

= 2.0.0.10
📦
Mozilla

Firefox

= 2.0.0.11
📦
Mozilla

Firefox

= 2.0.0.12
📦
Mozilla

Firefox

= 2.0.0.13
📦
Mozilla

Firefox

= 2.0.0.14
📦
Mozilla

Firefox

= 2.0.0.15
📦
Mozilla

Firefox

= 2.0.0.16
📦
Mozilla

Firefox

= 2.0.0.17
📦
Mozilla

Firefox

= 2.0.0.18
📦
Mozilla

Firefox

= 2.0.0.19
📦
Mozilla

Firefox

= 2.0.0.20
📦
Mozilla

Firefox

= 2.0.0.21
📦
Mozilla

Firefox

= 3.0
📦
Mozilla

Firefox

= 3.0
📦
Mozilla

Firefox

= 3.0
📦
Mozilla

Firefox

= 3.0
📦
Mozilla

Firefox

= 3.0.1
📦
Mozilla

Firefox

= 3.0.2
📦
Mozilla

Firefox

= 3.0.3
📦
Mozilla

Firefox

= 3.0.4
📦
Mozilla

Firefox

= 3.0.5
📦
Mozilla

Firefox

= 3.0.6
📦
Mozilla

Firefox

= 3.0.7
📦
Mozilla

Firefox

= 3.0.8
📦
Mozilla

Firefox

= 3.0.9
📦
Mozilla

Firefox

= 3.0.10

References & Advisories

Related Vulnerabilities