CVE-2011-0777
published 2011-02-04CVE-2011-0777: Use-after-free vulnerability in Google Chrome before 9.0.597.84 allows remote attackers to cause a denial of service or possibly have unspecified other impact…
PriorityP429high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.46%
70.9th percentile
Use-after-free vulnerability in Google Chrome before 9.0.597.84 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to image loading.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | < 9.0.597.84 | 9.0.597.84 |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_redhat4.7MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-f99q-26vh-5g2q: Use-after-free vulnerability in Google Chrome before 9
ghsa_unreviewed·2022-05-13
CVE-2011-0777 [HIGH] CWE-416 GHSA-f99q-26vh-5g2q: Use-after-free vulnerability in Google Chrome before 9
Use-after-free vulnerability in Google Chrome before 9.0.597.84 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to image loading.
Red Hat
Server: insecure pid file directory permissions
vendor_redhat·2011-02-22·CVSS 4.7
CVE-2011-0022 [MEDIUM] Server: insecure pid file directory permissions
Server: insecure pid file directory permissions
The setup scripts in 389 Directory Server 1.2.x (aka Red Hat Directory Server 8.2.x), when multiple unprivileged instances are configured, use 0777 permissions for the /var/run/dirsrv directory, which allows local users to cause a denial of service (daemon outage or arbitrary process termination) by replacing PID files contained in this directory.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-4370 CVE-2011-4371 CVE-2011-4372 CVE-2011-4373 CVE-2012-0774 CVE-2012-0775 CVE-2012-0777 acroread: multiple unspecified flaws (APSB12-08, APSB12-01)
bugzilla·2012-04-05·CVSS 7.5
CVE-2011-4370 [HIGH] CVE-2011-4370 CVE-2011-4371 CVE-2011-4372 CVE-2011-4373 CVE-2012-0774 CVE-2012-0775 CVE-2012-0777 acroread: multiple unspecified flaws (APSB12-08, APSB12-01)
CVE-2011-4370 CVE-2011-4371 CVE-2011-4372 CVE-2011-4373 CVE-2012-0774 CVE-2012-0775 CVE-2012-0777 acroread: multiple unspecified flaws (APSB12-08, APSB12-01)
Adobe has released a prenotification of APSB12-08 indicated that it will release updates for Adobe Reader 9.x for Linux. No details have been noted other than that they fix critical vulnerabilities in the software.
External References:
http://www.adobe.com/support/security/bulletins/apsb12-08.html
Discussion:
Further details from the bulletin, updated today:
These updates resolve an integer overflow in the True Type Font (TTF) handling that could lead to code execution (CVE-2012-0774).
These updates resolve a memory corruption in the JavaScript handling that could lead to code execution (CVE-2012-0775).
These updates resolve a
Bugzilla
CVE-2011-0022 Directory Server: insecure pid file directory permissions
bugzilla·2011-01-20·CVSS 4.7
CVE-2011-0022 [MEDIUM] CVE-2011-0022 Directory Server: insecure pid file directory permissions
CVE-2011-0022 Directory Server: insecure pid file directory permissions
It was discovered that 389 / Red Hat Directory Server's setup scripts
set insecure permissions (0777) on the /var/run/dirsrv directory used to
store Directory Server's pid files when multiple Directory Server
instances were configured on the system to be run under the different
unprivileged users.
A local user could use this flaw to create, remove or replace pid files
in this directory, possibly preventing correct start of the Directory
Server instances, or causing Directory Server init script to kill
arbitrary process during the Directory Server shutdown.
Discussion:
The CVE identifier of CVE-2011-0022 has been assigned to this issue.
---
*** Bug 669767 has been marked as a duplicate of this bug. ***
---
This
http://code.google.com/p/chromium/issues/detail?id=55831http://googlechromereleases.blogspot.com/2011/02/stable-channel-update.htmlhttp://secunia.com/advisories/43368http://www.debian.org/security/2011/dsa-2166http://www.vupen.com/english/advisories/2011/0408https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14514http://code.google.com/p/chromium/issues/detail?id=55831http://googlechromereleases.blogspot.com/2011/02/stable-channel-update.htmlhttp://secunia.com/advisories/43368http://www.debian.org/security/2011/dsa-2166http://www.vupen.com/english/advisories/2011/0408https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14514
2011-02-04
Published