CVE Database
/

CVE-2011-3002

Back to search

CVE-2011-3002

Published: Sep 29, 2011

Modified: Aug 6, 2024

PUBLISHED

Description

Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox before 7.0 and SeaMonkey before 2.4, does not validate the return value of a GrowAtomTable function call, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors that trigger a memory-allocation error and a resulting buffer overflow.

VendorProductVersions

n/a

n/a

affected
n/a

References

MDVSA-2011:141
vendor-advisory
x_refsource_MANDRIVA
oval:org.mitre.oval:def:14388
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now