Описание
The WebGL implementation in Google Chrome before 37.0.2062.94 does not ensure that clear calls interact properly with the state of a draw buffer, which allows remote attackers to cause a denial of service (read of uninitialized memory) via a crafted CANVAS element, related to gpu/command_buffer/service/framebuffer_manager.cc and gpu/command_buffer/service/gles2_cmd_decoder.cc.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 37.0.2062.94-0ubuntu1~pkg1065 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [37.0.2062.94-0ubuntu0.14.04.1~pkg1042]] |
| lucid | ignored | end of life |
| precise | released | 37.0.2062.94-0ubuntu0.12.04.1~pkg909 |
| trusty | released | 37.0.2062.94-0ubuntu0.14.04.1~pkg1042 |
| trusty/esm | DNE | trusty was released [37.0.2062.94-0ubuntu0.14.04.1~pkg1042] |
| upstream | released | 37.0.2062.94 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 1.2.0-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [1.1.2-0ubuntu0.14.04.1]] |
| lucid | DNE | |
| precise | DNE | |
| trusty | released | 1.1.2-0ubuntu0.14.04.1 |
| trusty/esm | DNE | trusty was released [1.1.2-0ubuntu0.14.04.1] |
| upstream | needs-triage |
Показывать по
5 Medium
CVSS2
Связанные уязвимости
The WebGL implementation in Google Chrome before 37.0.2062.94 does not ensure that clear calls interact properly with the state of a draw buffer, which allows remote attackers to cause a denial of service (read of uninitialized memory) via a crafted CANVAS element, related to gpu/command_buffer/service/framebuffer_manager.cc and gpu/command_buffer/service/gles2_cmd_decoder.cc.
The WebGL implementation in Google Chrome before 37.0.2062.94 does not ...
The WebGL implementation in Google Chrome before 37.0.2062.94 does not ensure that clear calls interact properly with the state of a draw buffer, which allows remote attackers to cause a denial of service (read of uninitialized memory) via a crafted CANVAS element, related to gpu/command_buffer/service/framebuffer_manager.cc and gpu/command_buffer/service/gles2_cmd_decoder.cc.
Уязвимость браузера Google Chrome, позволяющая удаленному злоумышленнику нарушить доступность защищаемой информации
5 Medium
CVSS2