PT-2015-2399 · Opera+3 · Opera+4
Ronald Crane
·
Published
2015-10-15
·
Updated
2024-06-15
·
CVE-2015-6760
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
libANGLE versions prior to 46.0.2490.71
Google Chrome versions prior to 46.0.2490.71
Opera versions prior to 46.0.2490.71
Description
The issue is related to the
Image11::map function in libANGLE, which mishandles mapping failures after device-lost events. This can be exploited by remote attackers to cause a denial of service, resulting in invalid read or write operations, or possibly having other unspecified impacts. The exploitation involves vectors related to a removed device.Recommendations
For Google Chrome versions prior to 46.0.2490.71, update to version 46.0.2490.71 or later.
For Opera versions prior to 46.0.2490.71, update to version 46.0.2490.71 or later.
For libANGLE versions prior to 46.0.2490.71, update to version 46.0.2490.71 or later.
As a temporary workaround, consider disabling the
Image11::map function until a patch is available.Exploit
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Google Chrome
Opera
Red Hat
Libangle