CVE-2011-2345Out-of-bounds Read in Google Chrome

CWE-125Out-of-bounds Read2 documents2 sources
Severity
4.3MEDIUMNVD
EPSS
0.8%
top 25.37%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 29
Latest updateMay 13

Description

The NPAPI implementation in Google Chrome before 12.0.742.112 does not properly handle strings, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDgoogle/chrome< 12.0.742.112

🔴Vulnerability Details

1
GHSA
GHSA-m424-w8jr-3944: The NPAPI implementation in Google Chrome before 122022-05-13
CVE-2011-2345 — Out-of-bounds Read in Google Chrome | cvebase