Lucene search

K
nessusTenable800899.PRM
HistoryMar 05, 2012 - 12:00 a.m.

Google Chrome < 17.0.963.65 Multiple Vulnerabilities

2012-03-0500:00:00
Tenable
www.tenable.com
16

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

0.015 Low

EPSS

Percentile

87.1%

Versions of Google Chrome earlier than 17.0.963.65 are potentially affected by the following vulnerabilities :

  • Use-after-free errors exist related to ‘v8 element wrapper’, SVG value handling, SVG document handling, SVG use handling, multi-column handling, quote handling, class attribute handling, table section handling, flexbox with floats and SVG animation elements. (CVE-2011-3031, CVE-2011-3032, CVE-2011-3034, CVE-2011-3035, CVE-2011-3038, CVE-2011-3039, CVE-2011-3041, CVE-2011-3042, CVE-2011-3043, CVE-2011-3044)

  • An error exists in the ‘Skia’ drawing library that can allow buffer overflows. (CVE-2011-3033)

  • Casting errors exist related to line box handling and anonymous block splitting. (CVE-2011-3036, CVE-2011-3037)

  • An out-of-bounds read error exists related to text handling. (CVE-2011-3040)

Binary data 800899.prm

References

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

0.015 Low

EPSS

Percentile

87.1%