cbcvebase.
CVE-2023-6856
published 2023-12-19

CVE-2023-6856: The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could allow an…

high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could allow an attacker to perform remote code execution and sandbox escape. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.

Affected

22 ranges
VendorProductVersion rangeFixed in
debiandebian_linux
debiandebian_linux
debiandebian_linux
debianfirefox< firefox 121.0-1 (sid)firefox 121.0-1 (sid)
debianfirefox-esr< firefox 121.0-1 (sid)firefox 121.0-1 (sid)
debianthunderbird< firefox 121.0-1 (sid)firefox 121.0-1 (sid)
mozillafirefox< 121.0121.0
mozillafirefox
mozillafirefox>= 0 < 121.0+build1-0ubuntu0.20.04.1121.0+build1-0ubuntu0.20.04.1
mozillafirefox>= 0 < 121.0.1+build1-0ubuntu0.20.04.1121.0.1+build1-0ubuntu0.20.04.1
mozillafirefox>= unspecified < 121121
mozillafirefox_esr< 115.6115.6
mozillafirefox_esr>= unspecified < 115.6115.6
mozillathunderbird< 115.6115.6
mozillathunderbird>= 0 < 1:115.6.0-1~deb11u11:115.6.0-1~deb11u1
mozillathunderbird>= 0 < 1:115.6.0-1~deb12u11:115.6.0-1~deb12u1
mozillathunderbird>= 0 < 1:115.6.0-11:115.6.0-1
mozillathunderbird>= 0 < 1:115.6.0-11:115.6.0-1
mozillathunderbird>= 0 < 1:115.6.0+build2-0ubuntu0.20.04.11:115.6.0+build2-0ubuntu0.20.04.1
mozillathunderbird>= 0 < 1:115.6.0+build2-0ubuntu0.22.04.11:115.6.0+build2-0ubuntu0.22.04.1
mozillathunderbird>= unspecified < 115.6115.6
msrcazl3_mozjs_102.15.1-1_on_azure_linux_3.0

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH