CVE-2011-3234Out-of-bounds Read in Google Chrome

CWE-125Out-of-bounds Read2 documents2 sources
Severity
5.0MEDIUMNVD
EPSS
2.8%
top 13.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 19
Latest updateMay 13

Description

Google Chrome before 14.0.835.163 does not properly handle boxes, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages4 packages

NVDgoogle/chrome< 14.0.835.163
NVDapple/itunes< 10.5
NVDapple/safari< 5.1.1
NVDapple/iphone_os< 5.0

Patches

🔴Vulnerability Details

1
GHSA
GHSA-cvcj-r5rq-wfvh: Google Chrome before 142022-05-13