CVE-2011-1296
- EPSS 1.84%
- Published 25.03.2011 19:55:01
- Last modified 11.04.2025 00:51:21
Google Chrome before 10.0.648.204 does not properly handle SVG text, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."
CVE-2011-1291
- EPSS 1.94%
- Published 25.03.2011 19:55:00
- Last modified 11.04.2025 00:51:21
Google Chrome before 10.0.648.204 does not properly handle base strings, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors, related to a "buffer error."
CVE-2011-1292
- EPSS 1.37%
- Published 25.03.2011 19:55:00
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in the frame-loader implementation in Google Chrome before 10.0.648.204 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CVE-2011-1293
- EPSS 1.45%
- Published 25.03.2011 19:55:00
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in the HTMLCollection implementation in Google Chrome before 10.0.648.204 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
- EPSS 0.43%
- Published 20.03.2011 02:00:04
- Last modified 11.04.2025 00:51:21
The SPDY implementation in net/http/http_network_transaction.cc in Google Chrome before 11.0.696.14 drains the bodies from SPDY responses, which might allow remote SPDY servers to cause a denial of service (application exit) by canceling a stream.
CVE-2011-0609
- EPSS 92.4%
- Published 15.03.2011 17:55:03
- Last modified 11.04.2025 00:51:21
Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier on Android; Adobe AIR 2.5.1 and earlier; and Authplay.dll (aka AuthPlayLib.bundle) in Adobe Reader and Acrobat 9...
CVE-2011-1200
- EPSS 1.45%
- Published 11.03.2011 02:01:20
- Last modified 11.04.2025 00:51:21
Google Chrome before 10.0.648.127 does not properly perform a cast of an unspecified variable during text rendering, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.
CVE-2011-1201
- EPSS 2.18%
- Published 11.03.2011 02:01:20
- Last modified 11.04.2025 00:51:21
The context implementation in WebKit, as used in Google Chrome before 10.0.648.127, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."
CVE-2011-1202
- EPSS 0.64%
- Published 11.03.2011 02:01:20
- Last modified 11.04.2025 00:51:21
The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an ...
CVE-2011-1203
- EPSS 2.1%
- Published 11.03.2011 02:01:20
- Last modified 11.04.2025 00:51:21
Google Chrome before 10.0.648.127 does not properly handle SVG cursors, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."