Описание
Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox before 7.0 and SeaMonkey before 2.4, does not validate the return value of a GrowAtomTable function call, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors that trigger a memory-allocation error and a resulting buffer overflow.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 7.0.1+build1+nobinonly-0ubuntu1 |
| hardy | ignored | end of life |
| lucid | not-affected | |
| maverick | not-affected | 3.6.23+build1+nobinonly-0ubuntu0.10.10.1 |
| natty | released | 7.0.1+build1+nobinonly-0ubuntu0.11.04.1 |
| upstream | released | 7.0 |
Показывать по
EPSS
9.3 Critical
CVSS2
Связанные уязвимости
Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox before 7.0 and SeaMonkey before 2.4, does not validate the return value of a GrowAtomTable function call, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors that trigger a memory-allocation error and a resulting buffer overflow.
Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefo ...
Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox before 7.0 and SeaMonkey before 2.4, does not validate the return value of a GrowAtomTable function call, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors that trigger a memory-allocation error and a resulting buffer overflow.
EPSS
9.3 Critical
CVSS2