Vulnerability Name: CVE-2011-1300 (CCN-66766) Assigned: 2011-04-14 Published: 2011-04-14 Updated: 2019-07-18 Summary: The Program::getActiveUniformMaxLength function in libGLESv2/Program.cpp in libGLESv2.dll in the WebGLES library in Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox 4.x before 4.0.1 on Windows and in the GPU process in Google Chrome before 10.0.648.205 on Windows, allows remote attackers to execute arbitrary code via unspecified vectors, related to an "off-by-three" error. CVSS v3 Severity: 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L )Exploitability Metrics: Attack Vector (AV): NetworkAttack Complexity (AC): LowPrivileges Required (PR): NoneUser Interaction (UI): NoneScope: Scope (S): UnchangedImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Low
CVSS v2 Severity: 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C )7.4 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): LowAuthentication (Au): NoneImpact Metrics: Confidentiality (C): CompleteIntegrity (I): CompleteAvailibility (A): Complete
4.3 Medium (CCN CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P )3.2 Low (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P/E:U/RL:OF/RC:C )Exploitability Metrics: Access Vector (AV): NetworkAccess Complexity (AC): MediumAthentication (Au): NoneImpact Metrics: Confidentiality (C): NoneIntegrity (I): NoneAvailibility (A): Partial
Vulnerability Type: CWE-189 Vulnerability Consequences: Denial of Service References: Source: CONFIRM Type: Vendor Advisoryhttp://code.google.com/p/angleproject/source/detail?r=611 Source: CONFIRM Type: Vendor Advisoryhttp://code.google.com/p/chromium/issues/detail?id=70070 Source: MITRE Type: CNACVE-2011-1300 Source: CCN Type: Google Chrome Releases Web siteStable Channel Update Source: CONFIRM Type: Vendor Advisoryhttp://googlechromereleases.blogspot.com/2011/04/stable-channel-update.html Source: CCN Type: SA44141Google Chrome Flash Player Code Execution Vulnerability Source: SECUNIA Type: Vendor Advisory44141 Source: CONFIRM Type: Vendor Advisoryhttp://www.mozilla.org/security/announce/2011/mfsa2011-17.html Source: CCN Type: OSVDB ID: 72093Mozilla Firefox WebGLES Library Off-by-three Memory Corruption Source: BID Type: Third Party Advisory, VDB Entry47377 Source: CCN Type: BID-47377Google Chrome Prior to 10.0.648.205 Multiple Security Vulnerabilities Source: SECTRACK Type: Third Party Advisory, VDB Entry1025377 Source: VUPEN Type: Vendor AdvisoryADV-2011-1006 Source: CONFIRM Type: Issue Tracking, Vendor Advisoryhttps://bugzilla.mozilla.org/show_bug.cgi?id=623791 Source: XF Type: Third Party Advisory, VDB Entrychrome-gpu-dos(66766) Source: XF Type: UNKNOWNchrome-gpu-dos(66766) Source: OVAL Type: Third Party Advisoryoval:org.mitre.oval:def:14466 Vulnerable Configuration: Configuration 1 :cpe:/a:mozilla:firefox:4.0:*:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta1:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta10:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta11:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta12:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta2:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta3:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta4:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta5:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta6:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta7:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta8:*:*:*:*:*:* OR cpe:/a:mozilla:firefox:4.0:beta9:*:*:*:*:*:* AND cpe:/o:microsoft:windows:-:*:*:*:*:*:*:* Configuration 2 :cpe:/a:google:chrome:*:*:*:*:*:*:*:* (Version < 10.0.648.205)AND cpe:/o:microsoft:windows:-:*:*:*:*:*:*:* Configuration CCN 1 :cpe:/a:google:chrome:10.0.648.82:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.601.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.602.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.603.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.603.2:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.603.3:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.604.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.605.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.606.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.607.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.608.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.609.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.610.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.611.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.611.1:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.612.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.612.1:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.612.2:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.612.3:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.613.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.614.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.615.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.616.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.617.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.618.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.619.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.620.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.621.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.622.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.622.1:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.623.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.624.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.625.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.626.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.627.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.628.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.629.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.630.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.631.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.632.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.633.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.634.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.634.1:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.635.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.636.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.638.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.638.1:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.639.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.640.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.642.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.642.1:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.642.2:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.643.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.644.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.645.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.646.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.647.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.1:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.10:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.101:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.103:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.105:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.107:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.11:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.114:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.116:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.118:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.119:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.12:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.120:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.121:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.122:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.123:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.124:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.125:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.126:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.696.13:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.127:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.128:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.129:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.13:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.130:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.131:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.132:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.133:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.134:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.135:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.151:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.18:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.2:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.201:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.203:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.23:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.26:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.28:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.3:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.32:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.35:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.38:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.4:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.42:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.45:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.49:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.5:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.54:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.56:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.59:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.6:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.62:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.66:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.68:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.7:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.70:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.72:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.76:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.79:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.8:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.84:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.87:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.9:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.648.90:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.649.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.650.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:10.0.651.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.652.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.653.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.654.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.655.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.656.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.657.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.658.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.658.1:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.659.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.660.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.661.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.662.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.663.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.664.1:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.665.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.666.0:*:*:*:*:*:*:* OR cpe:/a:google:chrome:11.0.667.0:*:*:*:*:*:*:* Denotes that component is vulnerable Oval Definitions Definition ID Class Title Last Modified oval:org.mitre.oval:def:14466 V The Program::getActiveUniformMaxLength function in libGLESv2/Program.cpp in libGLESv2.dll in the WebGLES library in Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox 4.x before 4.0.1 on Windows and in the GPU process in Google Chrome before 10.0.648.205 on Windows, allows remote attackers to execute arbitrary code via unspecified vectors, related to an "off-by-three" error. 2014-10-06
BACK
mozilla firefox 4.0
mozilla firefox 4.0 beta1
mozilla firefox 4.0 beta10
mozilla firefox 4.0 beta11
mozilla firefox 4.0 beta12
mozilla firefox 4.0 beta2
mozilla firefox 4.0 beta3
mozilla firefox 4.0 beta4
mozilla firefox 4.0 beta5
mozilla firefox 4.0 beta6
mozilla firefox 4.0 beta7
mozilla firefox 4.0 beta8
mozilla firefox 4.0 beta9
microsoft windows -
google chrome *
microsoft windows -
google chrome 10.0.648.82
google chrome 10.0.601.0
google chrome 10.0.602.0
google chrome 10.0.603.0
google chrome 10.0.603.2
google chrome 10.0.603.3
google chrome 10.0.604.0
google chrome 10.0.605.0
google chrome 10.0.606.0
google chrome 10.0.607.0
google chrome 10.0.608.0
google chrome 10.0.609.0
google chrome 10.0.610.0
google chrome 10.0.611.0
google chrome 10.0.611.1
google chrome 10.0.612.0
google chrome 10.0.612.1
google chrome 10.0.612.2
google chrome 10.0.612.3
google chrome 10.0.613.0
google chrome 10.0.614.0
google chrome 10.0.615.0
google chrome 10.0.616.0
google chrome 10.0.617.0
google chrome 10.0.618.0
google chrome 10.0.619.0
google chrome 10.0.620.0
google chrome 10.0.621.0
google chrome 10.0.622.0
google chrome 10.0.622.1
google chrome 10.0.623.0
google chrome 10.0.624.0
google chrome 10.0.625.0
google chrome 10.0.626.0
google chrome 10.0.627.0
google chrome 10.0.628.0
google chrome 10.0.629.0
google chrome 10.0.630.0
google chrome 10.0.631.0
google chrome 10.0.632.0
google chrome 10.0.633.0
google chrome 10.0.634.0
google chrome 10.0.634.1
google chrome 10.0.635.0
google chrome 10.0.636.0
google chrome 10.0.638.0
google chrome 10.0.638.1
google chrome 10.0.639.0
google chrome 10.0.640.0
google chrome 10.0.642.0
google chrome 10.0.642.1
google chrome 10.0.642.2
google chrome 10.0.643.0
google chrome 10.0.644.0
google chrome 10.0.645.0
google chrome 10.0.646.0
google chrome 10.0.647.0
google chrome 10.0.648.0
google chrome 10.0.648.1
google chrome 10.0.648.10
google chrome 10.0.648.101
google chrome 10.0.648.103
google chrome 10.0.648.105
google chrome 10.0.648.107
google chrome 10.0.648.11
google chrome 10.0.648.114
google chrome 10.0.648.116
google chrome 10.0.648.118
google chrome 10.0.648.119
google chrome 10.0.648.12
google chrome 10.0.648.120
google chrome 10.0.648.121
google chrome 10.0.648.122
google chrome 10.0.648.123
google chrome 10.0.648.124
google chrome 10.0.648.125
google chrome 10.0.648.126
google chrome 11.0.696.13
google chrome 10.0.648.127
google chrome 10.0.648.128
google chrome 10.0.648.129
google chrome 10.0.648.13
google chrome 10.0.648.130
google chrome 10.0.648.131
google chrome 10.0.648.132
google chrome 10.0.648.133
google chrome 10.0.648.134
google chrome 10.0.648.135
google chrome 10.0.648.151
google chrome 10.0.648.18
google chrome 10.0.648.2
google chrome 10.0.648.201
google chrome 10.0.648.203
google chrome 10.0.648.23
google chrome 10.0.648.26
google chrome 10.0.648.28
google chrome 10.0.648.3
google chrome 10.0.648.32
google chrome 10.0.648.35
google chrome 10.0.648.38
google chrome 10.0.648.4
google chrome 10.0.648.42
google chrome 10.0.648.45
google chrome 10.0.648.49
google chrome 10.0.648.5
google chrome 10.0.648.54
google chrome 10.0.648.56
google chrome 10.0.648.59
google chrome 10.0.648.6
google chrome 10.0.648.62
google chrome 10.0.648.66
google chrome 10.0.648.68
google chrome 10.0.648.7
google chrome 10.0.648.70
google chrome 10.0.648.72
google chrome 10.0.648.76
google chrome 10.0.648.79
google chrome 10.0.648.8
google chrome 10.0.648.84
google chrome 10.0.648.87
google chrome 10.0.648.9
google chrome 10.0.648.90
google chrome 10.0.649.0
google chrome 10.0.650.0
google chrome 10.0.651.0
google chrome 11.0.652.0
google chrome 11.0.653.0
google chrome 11.0.654.0
google chrome 11.0.655.0
google chrome 11.0.656.0
google chrome 11.0.657.0
google chrome 11.0.658.0
google chrome 11.0.658.1
google chrome 11.0.659.0
google chrome 11.0.660.0
google chrome 11.0.661.0
google chrome 11.0.662.0
google chrome 11.0.663.0
google chrome 11.0.664.1
google chrome 11.0.665.0
google chrome 11.0.666.0
google chrome 11.0.667.0