CVE-2012-3105 PUBLISHED CVSS 9.300000190734863 CRITICAL

The glBufferData function in the WebGL implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not properly mitigate an unspecified flaw in an NVIDIA driver, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors, a related issue to CVE-2011-3101.

EPSS 3.22% · 87.0th percentile

Risk Scores

CVSS v2.0
9.300000190734863
EPSS Score
3.22%
87.0th percentile

Affected Products

VendorProductVersions
mozillathunderbird_esr10.0.4, 10.0, 10.0.1
mozillathunderbird7.0, 7.0.1, 8.0
mozillafirefox5.0, 4.0, 4.0
n/an/an/a
mozillaseamonkey2.0.9, 2.0.10, 2.0.11

Timeline

References

Open in Interactive Console →