CVE-2011-3040Out-of-bounds Read in Google Chrome

CWE-125Out-of-bounds Read2 documents2 sources
Severity
4.3MEDIUMNVD
EPSS
2.7%
top 14.20%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 5
Latest updateMay 13

Description

Google Chrome before 17.0.963.65 does not properly handle text, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted document.

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Affected Packages5 packages

NVDgoogle/chrome< 17.0.963.65
NVDapple/itunes< 10.7
NVDapple/safari< 6.0
NVDapple/iphone_os< 6.0

🔴Vulnerability Details

1
GHSA
GHSA-7m92-63xh-fv49: Google Chrome before 172022-05-13