CVE-2011-2857
- EPSS 1.56%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:07
Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the focus controller.
- EPSS 1.26%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:07
Google Chrome before 14.0.835.163 does not properly handle triangle arrays, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
CVE-2011-2859
- EPSS 0.89%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:08
Google Chrome before 14.0.835.163 uses incorrect permissions for non-gallery pages, which has unspecified impact and attack vectors.
CVE-2011-2860
- EPSS 1.76%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:08
Use-after-free vulnerability in Google Chrome before 14.0.835.163 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to table styles.
CVE-2011-2861
- EPSS 1.48%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:08
Google Chrome before 14.0.835.163 does not properly handle strings in PDF documents, which allows remote attackers to have an unspecified impact via a crafted document that triggers an incorrect read operation.
CVE-2011-2862
- EPSS 0.89%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:08
Google V8, as used in Google Chrome before 14.0.835.163, does not properly restrict access to built-in objects, which has unspecified impact and remote attack vectors.
- EPSS 1.3%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:08
Google Chrome before 14.0.835.163 does not properly handle Tibetan characters, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
CVE-2011-2874
- EPSS 0.68%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:09
Google Chrome before 14.0.835.163 does not perform an expected pin operation for a self-signed certificate during a session, which has unspecified impact and remote attack vectors.
CVE-2011-2875
- EPSS 1.31%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:09
Google V8, as used in Google Chrome before 14.0.835.163, does not properly perform object sealing, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."
- EPSS 1.88%
- Veröffentlicht 19.09.2011 12:02:56
- Zuletzt bearbeitet 16.06.2026 23:32:55
Google Chrome before 14.0.835.163 does not properly handle boxes, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.