CVE-2011-3101Improper Restriction of Operations within the Bounds of a Memory Buffer in Google Chrome

Severity
10.0CRITICALNVD
NVD9.3
EPSS
1.7%
top 17.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 16
Latest updateMay 17

Description

Google Chrome before 19.0.1084.46 on Linux does not properly mitigate an unspecified flaw in an NVIDIA driver, which has unknown impact and attack vectors. NOTE: see CVE-2012-3105 for the related MFSA 2012-34 issue in Mozilla products.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages5 packages

NVDgoogle/chrome19.0.1084.45
NVDmozilla/seamonkey2.9+64
NVDmozilla/firefox20 versions+19
NVDmozilla/thunderbird16 versions+15
NVDmozilla/thunderbird_esr5 versions+4

🔴Vulnerability Details

2
GHSA
GHSA-7p2c-gjhf-hwwv: The glBufferData function in the WebGL implementation in Mozilla Firefox 42022-05-17
GHSA
GHSA-26x4-q5xq-8jvc: Google Chrome before 192022-05-14

📋Vendor Advisories

5
Ubuntu
Thunderbird vulnerabilities2012-06-27
Ubuntu
Firefox regressions2012-06-20
Ubuntu
Firefox vulnerabilities2012-06-06
Red Hat
Mozilla: Miscellaneous memory safety hazards (rv:13.0/ rv:10.0.5) (MFSA 2012-34)2012-06-05
Red Hat
Mozilla: Miscellaneous memory safety hazards (rv:13.0/ rv:10.0.5) (MFSA 2012-34)2012-06-05

💬Community

1
Bugzilla
CVE-2011-3101 CVE-2012-1937 CVE-2012-1938 CVE-2012-1939 CVE-2012-3105 Mozilla: Miscellaneous memory safety hazards (rv:13.0/ rv:10.0.5) (MFSA 2012-34)2012-06-03
CVE-2011-3101 — Google Chrome vulnerability | cvebase