CVE-2011-1300
The Program::getActiveUniformMaxLength function in libGLESv2/Program.cpp in libGLESv2.dll in the WebGLES library in Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox 4.x before 4.0.1 on Windows and in the GPU process in Google…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (3.01%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
The Program::getActiveUniformMaxLength function in libGLESv2/Program.cpp in libGLESv2.dll in the WebGLES library in Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox 4.x before 4.0.1 on Windows and in the GPU process in Google Chrome before 10.0.648.205 on Windows, allows remote attackers to execute arbitrary code via unspecified vectors, related to an "off-by-three" error.
- CVSS 2.0
- 10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
- EPSS
- 3.01% probability · 87th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-189
- Affected
- mozilla/firefox · google/chrome
- Source
- cve@mitre.org
References
- http://code.google.com/p/angleproject/source/detail?r=611Vendor Advisory
- http://code.google.com/p/chromium/issues/detail?id=70070Vendor Advisory
- http://googlechromereleases.blogspot.com/2011/04/stable-channel-update.htmlVendor Advisory
- http://secunia.com/advisories/44141Vendor Advisory
- http://www.mozilla.org/security/announce/2011/mfsa2011-17.htmlVendor Advisory
- http://www.securityfocus.com/bid/47377Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1025377Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2011/1006Vendor Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=623791Issue Tracking, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/66766Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14466Third Party Advisory
- http://code.google.com/p/angleproject/source/detail?r=611Vendor Advisory
- http://code.google.com/p/chromium/issues/detail?id=70070Vendor Advisory
- http://googlechromereleases.blogspot.com/2011/04/stable-channel-update.htmlVendor Advisory
- http://secunia.com/advisories/44141Vendor Advisory
- http://www.mozilla.org/security/announce/2011/mfsa2011-17.htmlVendor Advisory
- http://www.securityfocus.com/bid/47377Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1025377Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2011/1006Vendor Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=623791Issue Tracking, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/66766Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14466Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.