CVE-2011-3090
- EPSS 1.85%
- Veröffentlicht 16.05.2012 00:55:02
- Zuletzt bearbeitet 16.06.2026 23:32:38
Race condition in Google Chrome before 19.0.1084.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to worker processes.
- EPSS 2.25%
- Veröffentlicht 16.05.2012 00:55:02
- Zuletzt bearbeitet 16.06.2026 23:32:38
Use-after-free vulnerability in the IndexedDB implementation in Google Chrome before 19.0.1084.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
- EPSS 2.2%
- Veröffentlicht 16.05.2012 00:55:02
- Zuletzt bearbeitet 16.06.2026 23:32:38
The regex implementation in Google V8, as used in Google Chrome before 19.0.1084.46, allows remote attackers to cause a denial of service (invalid write operation) or possibly have unspecified other impact via unknown vectors.
- EPSS 1.47%
- Veröffentlicht 16.05.2012 00:55:02
- Zuletzt bearbeitet 16.06.2026 23:32:38
Google Chrome before 19.0.1084.46 does not properly handle glyphs, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
- EPSS 1.47%
- Veröffentlicht 16.05.2012 00:55:02
- Zuletzt bearbeitet 16.06.2026 23:32:39
Google Chrome before 19.0.1084.46 does not properly handle Tibetan text, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
- EPSS 2.18%
- Veröffentlicht 16.05.2012 00:55:02
- Zuletzt bearbeitet 16.06.2026 23:32:39
The OGG container in Google Chrome before 19.0.1084.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an out-of-bounds write.
- EPSS 1.31%
- Veröffentlicht 16.05.2012 00:55:01
- Zuletzt bearbeitet 16.06.2026 23:32:37
browser/profiles/profile_impl_io_data.cc in Google Chrome before 19.0.1084.46 does not properly handle a malformed ftp URL in the SRC attribute of a VIDEO element, which allows remote attackers to cause a denial of service (NULL pointer dereference a...
CVE-2011-3084
- EPSS 1.29%
- Veröffentlicht 16.05.2012 00:55:01
- Zuletzt bearbeitet 16.06.2026 23:32:37
Google Chrome before 19.0.1084.46 does not use a dedicated process for the loading of links found on an internal page, which might allow attackers to bypass intended sandbox restrictions via a crafted page.
- EPSS 1.41%
- Veröffentlicht 16.05.2012 00:55:01
- Zuletzt bearbeitet 16.06.2026 23:32:37
The Autofill feature in Google Chrome before 19.0.1084.46 does not properly restrict field values, which allows remote attackers to cause a denial of service (UI corruption) and possibly conduct spoofing attacks via vectors involving long values.
- EPSS 3.34%
- Veröffentlicht 16.05.2012 00:55:01
- Zuletzt bearbeitet 16.06.2026 23:32:37
Use-after-free vulnerability in Google Chrome before 19.0.1084.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a STYLE element.