10
CVSSv2

CVE-2011-1300

Published: 15/04/2011 Updated: 18/07/2019
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Program::getActiveUniformMaxLength function in libGLESv2/Program.cpp in libGLESv2.dll in the WebGLES library in Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox 4.x prior to 4.0.1 on Windows and in the GPU process in Google Chrome prior to 10.0.648.205 on Windows, allows remote malicious users to execute arbitrary code via unspecified vectors, related to an "off-by-three" error.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 4.0

google chrome

Vendor Advisories

Mozilla Foundation Security Advisory 2011-17 WebGLES vulnerabilities Announced April 28, 2011 Impact Critical Products Firefox Fixed in Firefox 401 Descripti ...