« Volver al listado

CVE-2011-2603

Estado: ModificadaAlta (7.1)—

El driver NVIDIA 9400M v6.2.6 en Mac OS X v10.6.7 permite a atacantes remotos provocar una denegación de servicio (desktop hang) a través de una página web manipulada que es visitada con Google Chrome o Moilla Firefox, como se demostró con la página de prueba lots-of-polys-example.html en el "Khronos WebGL SDK".

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2011-2603",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.1,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:C",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "MEDIUM",
          "availabilityImpact": "COMPLETE",
          "confidentialityImpact": "NONE"
        },
        "acInsufInfo": false,
        "impactScore": 6.9,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 8.6,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": true
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2011-06-30T15:55:04.660",
  "references": [
    {
      "url": "http://www.contextis.com/resources/blog/webgl/",
      "tags": [
        "Exploit"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.contextis.com/resources/blog/webgl2/",
      "tags": [
        "Exploit"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/48319",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.contextis.com/resources/blog/webgl/",
      "tags": [
        "Exploit"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.contextis.com/resources/blog/webgl2/",
      "tags": [
        "Exploit"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/48319",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-399"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The NVIDIA 9400M driver 6.2.6 on Mac OS X 10.6.7 allows remote attackers to cause a denial of service (desktop hang) via a crafted web page that is visited with Google Chrome or Mozilla Firefox, as demonstrated by the lots-of-polys-example.html test page in the Khronos WebGL SDK."
    },
    {
      "lang": "es",
      "value": "El driver NVIDIA 9400M v6.2.6 en Mac OS X v10.6.7 permite a atacantes remotos provocar una denegación de servicio (desktop hang) a través de una página web manipulada que es visitada con Google Chrome o Moilla Firefox, como se demostró con la página de prueba lots-of-polys-example.html en el \"Khronos WebGL SDK\"."
    }
  ],
  "lastModified": "2026-06-16T23:31:37.943",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:nvidia:9400m_driver:6.2.6:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "19E2522D-B216-43C9-9BDE-254B437AE33E"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:apple:mac_os_x:10.6.7:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "1E715DFC-ADB8-43D0-9941-76BB0BE7BCF5"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "cve@mitre.org"
}