Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Mozilla Firefox JavaScript WebGL API (GLitch) - Windows / Mac OS X

Information

Severity

Severity

Medium

Family

Family

General

CVSSv2 Base

CVSSv2 Base

5.8

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:P/I:P/A:N

Solution Type

Solution Type

Vendor Patch

Created

Created

2 years ago

Modified

Modified

2 years ago

Summary

Mozilla Firefox is prone to a vulnerability in the JavaScript WebGL API dubbed 'GLitch'.

Insight

Insight

Some platforms with integrated GPUs, such as smartphones, may allow both side-channel and rowhammer attacks via WebGL, which may allow a remote attacker to compromise the browser on an affected platform. An attack technique that leverages these vulnerabilities is called 'GLitch.'.

Affected Software

Affected Software

Mozilla Firefox before version 60.0.

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

Update to Mozilla Firefox 60.0 or later which disable high precision timers in the browser to mitigate this flaw.

Common Vulnerabilities and Exposures (CVE)