CVE-2011-3966Use After Free in Google Chrome

CWE-416Use After Free2 documents2 sources
Severity
7.5HIGHNVD
EPSS
7.1%
top 8.44%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 9
Latest updateMay 13

Description

Use-after-free vulnerability in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to error handling for Cascading Style Sheets (CSS) token-sequence data.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages4 packages

NVDgoogle/chrome< 17.0.963.46
NVDapple/itunes< 10.7
NVDapple/safari< 6.0
NVDapple/iphone_os< 6.0

🔴Vulnerability Details

1
GHSA
GHSA-rghx-h57g-p3xm: Use-after-free vulnerability in Google Chrome before 172022-05-13