← All CVEs

CVE-2011-2600

high · 7.1

The GPU support functionality in Windows XP does not properly restrict rendering time, which allows remote attackers to cause a denial of service (system crash) via vectors involving WebGL and (1) shader programs or (2) complex 3D geometry, as demonstrated by using Mozilla Firefox or Google Chrome to visit the lots-of-polys-example.html test page in the Khronos WebGL SDK.

7.1
CVSS
11.8%
EPSS (exploit prob.)
96th
EPSS percentile
2011-06-30
Published

AV:N/AC:M/Au:N/C:N/I:N/A:C

Weaknesses

CWE-264

Affected products

VendorProductAffected versions
microsoftwindows_xpall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2011-2600