PT-2015-2399 · Opera+3 · Opera+4

Ronald Crane

·

Published

2015-10-15

·

Updated

2024-06-15

·

CVE-2015-6760

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions libANGLE versions prior to 46.0.2490.71 Google Chrome versions prior to 46.0.2490.71 Opera versions prior to 46.0.2490.71
Description The issue is related to the Image11::map function in libANGLE, which mishandles mapping failures after device-lost events. This can be exploited by remote attackers to cause a denial of service, resulting in invalid read or write operations, or possibly having other unspecified impacts. The exploitation involves vectors related to a removed device.
Recommendations For Google Chrome versions prior to 46.0.2490.71, update to version 46.0.2490.71 or later. For Opera versions prior to 46.0.2490.71, update to version 46.0.2490.71 or later. For libANGLE versions prior to 46.0.2490.71, update to version 46.0.2490.71 or later. As a temporary workaround, consider disabling the Image11::map function until a patch is available.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1899
BDU:2015-11764
CVE-2015-6760
DSA-3376-1
MGASA-2015-0410
OPENSUSE-SU-2024:10171-1
OPENSUSE-SU-2024:12948-1
RHSA-2015:1912
RHSA-2015_1912

Affected Products

Alt Linux
Google Chrome
Opera
Red Hat
Libangle