CVE-2011-1439
published 2011-05-03CVE-2011-1439: Google Chrome before 11.0.696.57 on Linux does not properly isolate renderer processes, which has unspecified impact and remote attack vectors.
PriorityP422medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
0.85%
54.5th percentile
Google Chrome before 11.0.696.57 on Linux does not properly isolate renderer processes, which has unspecified impact and remote attack vectors.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | < 11.0.696.57 | 11.0.696.57 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-3647 Mozilla: Security problem with loadSubScript on 1.9.2 branch (MFSA 2011-46)
bugzilla·2011-11-08·CVSS 9.3
CVE-2011-3647 [CRITICAL] CVE-2011-3647 Mozilla: Security problem with loadSubScript on 1.9.2 branch (MFSA 2011-46)
CVE-2011-3647 Mozilla: Security problem with loadSubScript on 1.9.2 branch (MFSA 2011-46)
A potentially exploitable issue was found with loadSubScript with a content object as the scope object in the javascript implementation of mozilla.
Reference:
https://bugzilla.mozilla.org/show_bug.cgi?id=680880
Discussion:
*** Bug 751930 has been marked as a duplicate of this bug. ***
---
External References:
http://www.mozilla.org/security/announce/2011/mfsa2011-46.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2011:1439 https://rhn.redhat.com/errata/RHSA-2011-1439.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 4
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Via RHSA-2011:1437 https://rhn
Bugzilla
CVE-2011-3650 Mozilla: crash while profiling page with many functions (MFSA 2011-49)
bugzilla·2011-11-08·CVSS 9.3
CVE-2011-3650 [CRITICAL] CVE-2011-3650 Mozilla: crash while profiling page with many functions (MFSA 2011-49)
CVE-2011-3650 Mozilla: crash while profiling page with many functions (MFSA 2011-49)
When profiling a javascript page with many functions, typically by using an extension such as firebug, firefox would crash. This could be exploited to execute arbitrary code.
Reference:
https://bugzilla.mozilla.org/show_bug.cgi?id=674776
Discussion:
External References:
http://www.mozilla.org/security/announce/2011/mfsa2011-49.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2011:1439 https://rhn.redhat.com/errata/RHSA-2011-1439.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 4
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Via RHSA-2011:1437 https://rhn.redhat.com/errata/RHSA-2011-1437.html
http://code.google.com/p/chromium/issues/detail?id=74763http://googlechromereleases.blogspot.com/2011/04/chrome-stable-update.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/67146https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14300http://code.google.com/p/chromium/issues/detail?id=74763http://googlechromereleases.blogspot.com/2011/04/chrome-stable-update.htmlhttps://exchange.xforce.ibmcloud.com/vulnerabilities/67146https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14300
2011-05-03
Published