CVE-2011-3955
- EPSS 1.08%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:12
Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors that trigger the aborting of an IndexedDB transaction.
CVE-2011-3956
- EPSS 0.68%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:12
The extension implementation in Google Chrome before 17.0.963.46 does not properly handle sandboxed origins, which might allow remote attackers to bypass the Same Origin Policy via a crafted extension.
CVE-2011-3957
- EPSS 1.43%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:12
Use-after-free vulnerability in the garbage-collection functionality in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving PDF documents.
CVE-2011-3958
- EPSS 1.52%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:12
Google Chrome before 17.0.963.46 does not properly perform casts of variables during handling of a column span, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted document.
CVE-2011-3959
- EPSS 1.49%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:12
Buffer overflow in the locale implementation in Google Chrome before 17.0.963.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CVE-2011-3960
- EPSS 1.56%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:12
Google Chrome before 17.0.963.46 does not properly decode audio data, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
CVE-2011-3961
- EPSS 2.37%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:12
Race condition in Google Chrome before 17.0.963.46 allows remote attackers to execute arbitrary code via vectors that trigger a crash of a utility process.
CVE-2011-3962
- EPSS 1.29%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:12
Google Chrome before 17.0.963.46 does not properly perform path clipping, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
- EPSS 1.15%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:13
Google Chrome before 17.0.963.46 does not properly handle PDF FAX images, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
CVE-2011-3964
- EPSS 0.86%
- Veröffentlicht 09.02.2012 04:10:28
- Zuletzt bearbeitet 16.06.2026 23:34:13
Google Chrome before 17.0.963.46 does not properly implement the drag-and-drop feature, which makes it easier for remote attackers to spoof the URL bar via unspecified vectors.