CVE-2011-3103
published 2012-05-24CVE-2011-3103: Google V8, as used in Google Chrome before 19.0.1084.52, does not properly perform garbage collection, which allows remote attackers to cause a denial of…
PriorityP426high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.67%
74.5th percentile
Google V8, as used in Google Chrome before 19.0.1084.52, does not properly perform garbage collection, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted JavaScript code.
Affected
132 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | <= 19.0.1084.51 | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-3103 v8: DoS due to improper garbage collection
bugzilla·2012-05-24·CVSS 7.5
CVE-2011-3103 [HIGH] CVE-2011-3103 v8: DoS due to improper garbage collection
CVE-2011-3103 v8: DoS due to improper garbage collection
Common Vulnerabilities and Exposures assigned an identifier CVE-2011-3103 to
the following vulnerability:
Name: CVE-2011-3103
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3103
Assigned: 20110809
Reference: http://code.google.com/p/chromium/issues/detail?id=117409
Reference: http://googlechromereleases.blogspot.com/2012/05/stable-channel-update_23.html
Google V8, as used in Google Chrome before 19.0.1084.52, does not
properly perform garbage collection, which allows remote attackers to
cause a denial of service (application crash) or possibly have
unspecified other impact via crafted JavaScript code.
Discussion:
Created v8 tracking bugs for this issue
Affects: fedora-all [bug 822006]
---
This has been fixed in F
Bugzilla
CVE-2011-3092 CVE-2011-3103 CVE-2011-3111 CVE-2011-3115 v8 various flaws [fedora-all]
bugzilla·2012-05-16·CVSS 10.0
CVE-2011-3092 [CRITICAL] CVE-2011-3092 CVE-2011-3103 CVE-2011-3111 CVE-2011-3115 v8 various flaws [fedora-all]
CVE-2011-3092 CVE-2011-3103 CVE-2011-3111 CVE-2011-3115 v8 various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type
http://code.google.com/p/chromium/issues/detail?id=117409http://googlechromereleases.blogspot.com/2012/05/stable-channel-update_23.htmlhttp://secunia.com/advisories/49277http://secunia.com/advisories/49306http://security.gentoo.org/glsa/glsa-201205-04.xmlhttp://www.securityfocus.com/bid/53679http://www.securitytracker.com/id?1027098https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15095http://code.google.com/p/chromium/issues/detail?id=117409http://googlechromereleases.blogspot.com/2012/05/stable-channel-update_23.htmlhttp://secunia.com/advisories/49277http://secunia.com/advisories/49306http://security.gentoo.org/glsa/glsa-201205-04.xmlhttp://www.securityfocus.com/bid/53679http://www.securitytracker.com/id?1027098https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15095
2012-05-24
Published