CVE-2011-2989
Description
The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products does not properly implement WebGL, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
Risk Information
Base Score
8.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
6.835
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Update for SeaMonkey (2.35) | Windows |
| Update for SeaMonkey (2.38) | Windows |
| Update for SeaMonkey (2.39) | Windows |
| Mozilla Firefox (63.0) | Windows |
| Mozilla Firefox (x64) (63.0) | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.14 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.0 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.12 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.17 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.4 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.5 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.6 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.9 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.22 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.4 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.5 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.6 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.7 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.7.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.7.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.7.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.8 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 0.9 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.0 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.0.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.0.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.0.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.0.4 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.0.5 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.0.6 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.0.7 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.0.8 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.10 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.11 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.12 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.13 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.14 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.4 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.5 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.6 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.7 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.8 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.0.9 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.5.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.7.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 1.7.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.16 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.18 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.19 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.21 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.23 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.7 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 2.0.0.8 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.4 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.5 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.6 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.1.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.1.2 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.10 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.7 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.8 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.9 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.1.3 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.1.4 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.1.5 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.1.6 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.0.11 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Thunderbird 3.1.7 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 4.0 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 4.0.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla Firefox (x64) 5.0 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 4.0 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 4.0.1 | Windows |
| Multiple Vulnerabilities are affected in Mozilla_Firefox 5.0 | Windows |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-301494 | Update for SeaMonkey (2.35) |
| PATCH-301495 | Update for SeaMonkey (2.38) |
| PATCH-301496 | Update for SeaMonkey (2.39) |
| PATCH-308288 | Mozilla Firefox (63.0) |
| PATCH-308291 | Mozilla Firefox (x64) (63.0) |
| PATCH-315938 | Mozilla Thunderbird (68.12.0) |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234