VYPR
High severity8.8NVD Advisory· Published Dec 19, 2023· Updated Jun 17, 2026

CVE-2023-6856

CVE-2023-6856

Description

The WebGL DrawElementsInstanced method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could allow an attacker to perform remote code execution and sandbox escape. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

44

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.