PT-2016-1461 · Mozilla+3 · Firefox+3

Ucha Gobejishvili

·

Published

2016-03-08

·

Updated

2024-12-12

·

CVE-2016-1956

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 45.0 on Linux
Description The issue is related to errors in resource management in the Intel video driver used by Firefox. It allows remote attackers to cause a denial of service, which can result in memory consumption or stack memory corruption, by triggering the use of a WebGL shader.
Recommendations For Mozilla Firefox versions prior to 45.0 on Linux, update to version 45.0 or later to resolve the issue. As a temporary workaround, consider disabling WebGL to minimize the risk of exploitation.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-00762
CVE-2016-1956
OPENSUSE-SU-2016:1769-1
OPENSUSE-SU-2016:1778-1
OPENSUSE-SU-2016_0731-1
OPENSUSE-SU-2016_0733-1
OPENSUSE-SU-2016_1767-1
OPENSUSE-SU-2016_1778-1
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:10230-1
OPENSUSE-SU-2024:14572-1
USN-2917-1
USN-2917-2
USN-2917-3

Affected Products

Intel Video Driver
Firefox
Suse
Ubuntu