6.4
CVSSv2

CVE-2011-2367

Published: 30/06/2011 Updated: 19/09/2017
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

The WebGL implementation in Mozilla Firefox 4.x up to and including 4.0.1 does not properly restrict read operations, which allows remote malicious users to obtain sensitive information from GPU memory associated with an arbitrary process, or cause a denial of service (application crash), via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 4.0

mozilla firefox 4.0.1

Vendor Advisories

Multiple Firefox vulnerabilities have been fixed ...
Under certain circumstances, the updated translations could unintentionally install firefox ...
This update provides provides packages compatible with Firefox 5 ...
Mozilla Foundation Security Advisory 2011-26 Multiple WebGL crashes Announced June 21, 2011 Reporter Christoph Diehl Impact Critical Products Firefox, SeaMonkey Fixed in Firefox 5 ...