- EPSS 2.34%
- Veröffentlicht 13.12.2011 21:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The Cascading Style Sheets (CSS) implementation in Google Chrome before 16.0.912.63 on 64-bit platforms does not properly manage property arrays, which allows remote attackers to cause a denial of service (memory corruption) via unspecified vectors.
CVE-2011-3913
- EPSS 2.29%
- Veröffentlicht 13.12.2011 21:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to Range handling.
- EPSS 0.23%
- Veröffentlicht 07.12.2011 19:55:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
WebKit, as used in Apple Safari 5.1.1 and earlier and Google Chrome 15 and earlier, does not prevent capture of data about the time required for image loading, which makes it easier for remote attackers to determine whether an image exists in the bro...
- EPSS 0.2%
- Veröffentlicht 07.12.2011 19:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The JavaScript implementation in Apple Safari 4 does not properly restrict the set of values contained in the object returned by the getComputedStyle method, which allows remote attackers to obtain sensitive information about visited web pages by cal...
CVE-2011-3897
- EPSS 2.1%
- Veröffentlicht 11.11.2011 11:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in Google Chrome before 15.0.874.120 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to editing.
CVE-2011-3881
- EPSS 0.5%
- Veröffentlicht 25.10.2011 19:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
WebKit, as used in Google Chrome before 15.0.874.102 and Android before 4.4, allows remote attackers to bypass the Same Origin Policy and conduct Universal XSS (UXSS) attacks via vectors related to (1) the DOMWindow::clear function and use of a selec...
CVE-2011-3885
- EPSS 2.41%
- Veröffentlicht 25.10.2011 19:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to stale Cascading Style Sheets (CSS) token-sequence data.
- EPSS 0.52%
- Veröffentlicht 25.10.2011 19:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Google Chrome before 15.0.874.102 does not properly handle javascript: URLs, which allows remote attackers to bypass intended access restrictions and read cookies via unspecified vectors.
CVE-2011-3888
- EPSS 2.1%
- Veröffentlicht 25.10.2011 19:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to editing operations in conjunction with an unknown pl...
CVE-2011-2845
- EPSS 0.53%
- Veröffentlicht 25.10.2011 19:55:00
- Zuletzt bearbeitet 29.04.2026 01:13:23
Google Chrome before 15.0.874.102 does not properly handle history data, which allows user-assisted remote attackers to spoof the URL bar via unspecified vectors.