Lucene search

K
cveMitreCVE-2011-0474
HistoryJan 14, 2011 - 5:00 p.m.

CVE-2011-0474

2011-01-1417:00:02
mitre
web.nvd.nist.gov
35
cve-2011-0474
google chrome
chrome os
css
denial of service
remote attack
nvd
vulnerability

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

High

EPSS

0.034

Percentile

91.5%

Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle Cascading Style Sheets (CSS) token sequences in conjunction with cursors, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a “stale pointer.”

Affected configurations

Nvd
Node
googlechromeRange<8.0.552.237
Node
debiandebian_linuxMatch6.0
OR
debiandebian_linuxMatch7.0
Node
googlechrome_osRange<8.0.552.344
VendorProductVersionCPE
googlechrome*cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
debiandebian_linux6.0cpe:2.3:o:debian:debian_linux:6.0:*:*:*:*:*:*:*
debiandebian_linux7.0cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*
googlechrome_os*cpe:2.3:o:google:chrome_os:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

High

EPSS

0.034

Percentile

91.5%