CVE-2011-2855
- EPSS 1.65%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Google Chrome before 14.0.835.163 does not properly handle Cascading Style Sheets (CSS) token sequences, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale no...
CVE-2011-2856
- EPSS 0.16%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Google V8, as used in Google Chrome before 14.0.835.163, allows remote attackers to bypass the Same Origin Policy via unspecified vectors.
CVE-2011-2857
- EPSS 2.1%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the focus controller.
- EPSS 0.89%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Google Chrome before 14.0.835.163 does not properly handle triangle arrays, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
CVE-2011-2859
- EPSS 0.15%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Google Chrome before 14.0.835.163 uses incorrect permissions for non-gallery pages, which has unspecified impact and attack vectors.
CVE-2011-2860
- EPSS 2.12%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to table styles.
CVE-2011-2861
- EPSS 2.9%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Google Chrome before 14.0.835.163 does not properly handle strings in PDF documents, which allows remote attackers to have an unspecified impact via a crafted document that triggers an incorrect read operation.
CVE-2011-2862
- EPSS 0.23%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Google V8, as used in Google Chrome before 14.0.835.163, does not properly restrict access to built-in objects, which has unspecified impact and remote attack vectors.
- EPSS 0.89%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Google Chrome before 14.0.835.163 does not properly handle Tibetan characters, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
CVE-2011-2874
- EPSS 0.11%
- Published 19.09.2011 12:02:56
- Last modified 11.04.2025 00:51:21
Google Chrome before 14.0.835.163 does not perform an expected pin operation for a self-signed certificate during a session, which has unspecified impact and remote attack vectors.