CVE-2011-1296Improper Input Validation in Google Chrome

Severity
7.5HIGHNVD
EPSS
1.8%
top 17.01%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 25
Latest updateMay 13

Description

Google Chrome before 10.0.648.204 does not properly handle SVG text, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages4 packages

NVDgoogle/chrome< 10.0.648.204
NVDapple/itunes< 10.5
NVDapple/safari< 5.0.6
NVDapple/iphone_os< 5.0

🔴Vulnerability Details

1
GHSA
GHSA-6252-2qqr-hjhh: Google Chrome before 102022-05-13

💥Exploits & PoCs

1
Exploit-DB
EC Software Help & Manual 5.5.1 Build 1296 - 'ijl15.dll' DLL Loading Arbitrary Code Execution2011-04-14