Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2009-2404

31
FAUCET Score

CVE-2009-2404 describes a heap-based buffer overflow in the regular-expression parser of Mozilla Network Security Services (NSS) versions prior to 3.12.3. This vulnerability affects various applications including Firefox, Thunderbird, SeaMonkey, Evolution, Pidgin, and AOL Instant Messenger (AIM). The flaw allows a remote SSL server to trigger a denial of service or potentially execute arbitrary code by presenting a specially crafted X.509 certificate with an excessively long domain name in the Common Name (CN) field. This vulnerability carries a critical CVSS score of 9.3, indicating a high severity. It can be exploited remotely with medium attack complexity, leading to complete compromise of confidentiality, integrity, and availability. While the FAUCET Risk Score is 93/100, suggesting significant risk, the EPSS score is relatively low at 0.21024. Currently, there is no evidence of active exploitation, and no public exploit code is available in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, which is typical for a large percentage of reported vulnerabilities.

Impacted Technologies

VendorProductVersion(s)CPE
3.12.3CPE matchmatch criteria
cpe:2.3:a:mozilla:network_security_services:3.12.3:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

9.3HIGH

AV:N/AC:M/Au:N/C:C/I:C/A:C

Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
Access Vector
NETWORK
Access Complexity
MEDIUM
Authentication
NONE
Exploitability Score
8.6
Impact Score
10.0
CvssVersion
2.0

Exploit Intelligence

EPSS Score
4.15%
Probability of exploitation in next 30 days
EPSS Percentile
89.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-25
Model: v2026.06.15
This CVE's current EPSS score of 0.0415 is in the 54th percentile among its peer group of 8,914 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (10)

mozillapatch availablevia nvd_reference
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 3Fixed in: seamonkey-0:1.0.9-0.41.el3
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4Fixed in: nspr-0:4.7.4-1.el4_8.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4Fixed in: nss-0:3.12.3.99.3-1.el4_8.2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4.7 Z StreamFixed in: nspr-0:4.7.4-1.el4_7.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4.7 Z StreamFixed in: nss-0:3.12.3.99.3-1.el4_7.6
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: nspr-0:4.7.4-1.el5_3.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: nss-0:3.12.3.99.3-1.el5_3.2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5.2 Z StreamFixed in: nspr-0:4.7.4-1.el5_2
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5.2 Z StreamFixed in: nss-0:3.12.3.99.3-1.el5_2
View patch

Vendor Advisories (1)

redhatCVE-2009-2404Critical

nss regexp heap overflow

Jul 29, 2009

References

rhn.redhat.com / errata/RHSA-2009-1185.html
bugzilla.redhat.com / show_bug.cgi
secunia.com / advisories/36088
Vendor Advisory
secunia.com / advisories/36102
Vendor Advisory
secunia.com / advisories/36125
Vendor Advisory
secunia.com / advisories/36139
Vendor Advisory
secunia.com / advisories/36157
Vendor Advisory
secunia.com / advisories/36434
secunia.com / advisories/37098
secunia.com / advisories/39428
oval.cisecurity.org / repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11174
oval.cisecurity.org / repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8658
sunsolve.sun.com / search/document.do
sunsolve.sun.com / search/document.do
sunsolve.sun.com / search/document.do
usn.ubuntu.com / 810-2
blackhat.com / presentations/bh-usa-09/MARLINSPIKE/BHUSA09-Marlinspike-DefeatSSL-SLIDES.pdf
debian.org / security/2009/dsa-1874
mandriva.com / security/advisories
mandriva.com / security/advisories
mozilla.org / security/announce/2009/mfsa2009-43.html
PatchVendor Advisory
novell.com / linux/security/advisories/2009_48_firefox.html
oracle.com / technetwork/topics/security/cpuapr2010-099504.html
redhat.com / support/errata/RHSA-2009-1207.html
securityfocus.com / bid/35891
Patch
ubuntu.com / usn/usn-810-1
us-cert.gov / cas/techalerts/TA10-103B.html
US Government Resource
vupen.com / english/advisories/2009/2085
PatchVendor Advisory