CVE-2011-3054
- EPSS 0.66%
- Published 22.03.2012 16:55:01
- Last modified 11.04.2025 00:51:21
The WebUI privilege implementation in Google Chrome before 17.0.963.83 does not properly perform isolation, which allows remote attackers to bypass intended access restrictions via unspecified vectors.
CVE-2011-3055
- EPSS 1.04%
- Published 22.03.2012 16:55:01
- Last modified 11.04.2025 00:51:21
The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation, which allows user-assisted remote attackers to have an unspecified impact via a crafted extension.
CVE-2011-3056
- EPSS 0.89%
- Published 22.03.2012 16:55:01
- Last modified 11.04.2025 00:51:21
Google Chrome before 17.0.963.83 allows remote attackers to bypass the Same Origin Policy via vectors involving a "magic iframe."
CVE-2011-3047
- EPSS 9.52%
- Published 10.03.2012 19:55:01
- Last modified 11.04.2025 00:51:21
The GPU process in Google Chrome before 17.0.963.79 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) by leveraging an error in the plug-in loading mechanism.
- EPSS 4.46%
- Published 09.03.2012 00:55:01
- Last modified 11.04.2025 00:51:21
The extension subsystem in Google Chrome before 17.0.963.78 does not properly handle history navigation, which allows remote attackers to execute arbitrary code by leveraging a "Universal XSS (UXSS)" issue.
CVE-2011-3031
- EPSS 2.82%
- Published 05.03.2012 19:55:01
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in the element wrapper in Google V8, as used in Google Chrome before 17.0.963.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CVE-2011-3032
- EPSS 1.57%
- Published 05.03.2012 19:55:01
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of SVG values.
CVE-2011-3033
- EPSS 2.41%
- Published 05.03.2012 19:55:01
- Last modified 11.04.2025 00:51:21
Buffer overflow in Skia, as used in Google Chrome before 17.0.963.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CVE-2011-3034
- EPSS 2.36%
- Published 05.03.2012 19:55:01
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving an SVG document.
CVE-2011-3035
- EPSS 2.36%
- Published 05.03.2012 19:55:01
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG use elements.