Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2011-2598

Description

The WebGL implementation in Mozilla Firefox 4.x allows remote attackers to obtain screenshots of the windows of arbitrary desktop applications via vectors involving an SVG filter, an IFRAME element, and uninitialized data in graphics memory.

POC

Reference

- http://www.contextis.com/resources/blog/webgl2/

- http://www.theregister.co.uk/2011/06/16/webgl_security_threats_redux/

Github

No PoCs found on GitHub currently.