The VertexBufferInterface::reserveVertexSpace function in libGLES in ANGLE, as used in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 on Windows, incorrectly allocates memory for shader attribute arrays, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via crafted (1) OpenGL or (2) WebGL content.
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
History
21 Nov 2024, 02:36
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00000.html - | |
References | () http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00003.html - | |
References | () http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00005.html - | |
References | () http://www.mozilla.org/security/announce/2015/mfsa2015-113.html - Vendor Advisory | |
References | () http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html - | |
References | () http://www.securityfocus.com/bid/76816 - | |
References | () http://www.securitytracker.com/id/1033640 - | |
References | () https://bugzilla.mozilla.org/show_bug.cgi?id=1190526 - |
22 Oct 2024, 13:42
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:mozilla:firefox_esr:38.1.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:38.0.5:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:38.2.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:38.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:38.1.1:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:38.2.1:*:*:*:*:*:*:* |
cpe:2.3:a:mozilla:firefox:38.0.1:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:38.2.1:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:38.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:38.1.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:38.0.5:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:38.1.1:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:38.2.0:*:*:*:*:*:*:* |
Information
Published : 2015-09-24 04:59
Updated : 2024-11-21 02:36
NVD link : CVE-2015-7179
Mitre link : CVE-2015-7179
CVE.ORG link : CVE-2015-7179
JSON object : View
Products Affected
mozilla
- firefox
microsoft
- windows
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer