CVE-2011-3909Improper Restriction of Operations within the Bounds of a Memory Buffer in Google Chrome

Severity
5.0MEDIUMNVD
EPSS
2.3%
top 15.12%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 13
Latest updateMay 13

Description

The Cascading Style Sheets (CSS) implementation in Google Chrome before 16.0.912.63 on 64-bit platforms does not properly manage property arrays, which allows remote attackers to cause a denial of service (memory corruption) via unspecified vectors.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages4 packages

NVDgoogle/chrome< 16.0.912.63
NVDapple/itunes< 10.6
NVDapple/safari< 5.1.4
NVDapple/iphone_os< 5.1

🔴Vulnerability Details

1
GHSA
GHSA-cpm4-33r5-5c79: The Cascading Style Sheets (CSS) implementation in Google Chrome before 162022-05-13