Executive Summary



This Alert is flagged as TOP 25 Common Weakness Enumeration from CWE/SANS. For more information, you can read this.
Summary
Title Chromium: Multiple vulnerabilities
Informations
Name GLSA-201203-19 First vendor Publication 2012-03-25
Vendor Gentoo Last vendor Modification 2012-03-25
Severity (Vendor) Normal Revision N/A

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:C/I:C/A:C)
Cvss Base Score 10 Attack Range Network
Cvss Impact Score 10 Attack Complexity Low
Cvss Expoit Score 10 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

Synopsis

Multiple vulnerabilities have been reported in Chromium, some of which may allow execution of arbitrary code.

Background

Chromium is an open source web browser project.

Description

Multiple vulnerabilities have been discovered in Chromium. Please review the CVE identifiers and release notes referenced below for details.

Impact

A remote attacker could entice a user to open a specially crafted web site using Chromium, possibly resulting in the execution of arbitrary code with the privileges of the process, a Denial of Service condition, Universal Cross-Site Scripting, or installation of an extension without user interaction.

A remote attacker could also entice a user to install a specially crafted extension that would interfere with browser-issued web requests.

Workaround

There is no known workaround at this time.

Resolution

All Chromium users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot -v ">=www-client/chromium-17.0.963.83"

References

[ 1 ] CVE-2011-3031 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3031
[ 2 ] CVE-2011-3032 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3032
[ 3 ] CVE-2011-3033 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3033
[ 4 ] CVE-2011-3034 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3034
[ 5 ] CVE-2011-3035 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3035
[ 6 ] CVE-2011-3036 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3036
[ 7 ] CVE-2011-3037 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3037
[ 8 ] CVE-2011-3038 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3038
[ 9 ] CVE-2011-3039 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3039
[ 10 ] CVE-2011-3040 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3040
[ 11 ] CVE-2011-3041 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3041
[ 12 ] CVE-2011-3042 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3042
[ 13 ] CVE-2011-3043 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3043
[ 14 ] CVE-2011-3044 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3044
[ 15 ] CVE-2011-3046 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3046
[ 16 ] CVE-2011-3047 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3047
[ 17 ] CVE-2011-3049 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3049
[ 18 ] CVE-2011-3050 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3050
[ 19 ] CVE-2011-3051 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3051
[ 20 ] CVE-2011-3052 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3052
[ 21 ] CVE-2011-3053 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3053
[ 22 ] CVE-2011-3054 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3054
[ 23 ] CVE-2011-3055 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3055
[ 24 ] CVE-2011-3056 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3056
[ 25 ] CVE-2011-3057 : http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2011-3057
[ 26 ] Release Notes 17.0.963.65

http://googlechromereleases.blogspot.com/2012/03/chrome-stable-update.html
[ 27 ] Release Notes 17.0.963.78

http://googlechromereleases.blogspot.com/2012/03/chrome-stable-channel-update.html
[ 28 ] Release Notes 17.0.963.79

http://googlechromereleases.blogspot.com/2012/03/chrome-stable-update_10.html
[ 29 ] Release Notes 17.0.963.83

http://googlechromereleases.blogspot.com/2012/03/stable-channel-update_21.html

Availability

This GLSA and any updates to it are available for viewing at the Gentoo Security Website:

http://security.gentoo.org/glsa/glsa-201203-19.xml

Original Source

Url : http://security.gentoo.org/glsa/glsa-201203-19.xml

CWE : Common Weakness Enumeration

% Id Name
54 % CWE-416 Use After Free
8 % CWE-704 Incorrect Type Conversion or Cast
8 % CWE-125 Out-of-bounds Read
8 % CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer
4 % CWE-346 Origin Validation Error
4 % CWE-306 Missing Authentication for Critical Function (CWE/SANS Top 25)
4 % CWE-269 Improper Privilege Management
4 % CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') (CWE/SANS Top 25)
4 % CWE-79 Failure to Preserve Web Page Structure ('Cross-site Scripting') (CWE/SANS Top 25)

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:14385
 
Oval ID: oval:org.mitre.oval:def:14385
Title: Google V8, as used in Google Chrome before 17.0.963.83, allows remote attackers to cause a denial of service via vectors that trigger an invalid read operation.
Description: Google V8, as used in Google Chrome before 17.0.963.83, allows remote attackers to cause a denial of service via vectors that trigger an invalid read operation.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3057
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14397
 
Oval ID: oval:org.mitre.oval:def:14397
Title: Google Chrome before 17.0.963.65 does not properly perform casts of unspecified variables during the splitting of anonymous blocks
Description: Google Chrome before 17.0.963.65 does not properly perform casts of unspecified variables during the splitting of anonymous blocks, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3037
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14414
 
Oval ID: oval:org.mitre.oval:def:14414
Title: Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 17.0.963.83 via vectors related to the :first-letter pseudo-element
Description: Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the :first-letter pseudo-element.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3050
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14438
 
Oval ID: oval:org.mitre.oval:def:14438
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.65 via vectors related to the handling of SVG values
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of SVG values.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3032
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14658
 
Oval ID: oval:org.mitre.oval:def:14658
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.83 via vectors related to block splitting.
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to block splitting.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3053
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14686
 
Oval ID: oval:org.mitre.oval:def:14686
Title: Vulnerability in the extension subsystem in Google Chrome before 17.0.963.78
Description: The extension subsystem in Google Chrome before 17.0.963.78 does not properly handle history navigation, which allows remote attackers to execute arbitrary code by leveraging a "Universal XSS (UXSS)" issue.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3046
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14819
 
Oval ID: oval:org.mitre.oval:def:14819
Title: The WebGL implementation in Google Chrome before 17.0.963.83 does not properly handle CANVAS elements
Description: The WebGL implementation in Google Chrome before 17.0.963.83 does not properly handle CANVAS elements, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3052
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14830
 
Oval ID: oval:org.mitre.oval:def:14830
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.65 via vectors involving SVG animation elements.
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG animation elements.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3044
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14839
 
Oval ID: oval:org.mitre.oval:def:14839
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.65 via vectors involving an SVG document
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving an SVG document.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3034
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14904
 
Oval ID: oval:org.mitre.oval:def:14904
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.65 via vectors related to quote handling.
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to quote handling.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3039
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14923
 
Oval ID: oval:org.mitre.oval:def:14923
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.65 via vectors related to the handling of class attributes.
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of class attributes.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3041
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14935
 
Oval ID: oval:org.mitre.oval:def:14935
Title: Vulnerability in the GPU process in Google Chrome before 17.0.963.79
Description: The GPU process in Google Chrome before 17.0.963.79 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) by leveraging an error in the plug-in loading mechanism.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3047
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14962
 
Oval ID: oval:org.mitre.oval:def:14962
Title: Google Chrome before 17.0.963.83 allows remote attackers to bypass the Same Origin Policy via vectors involving a "magic iframe"
Description: Google Chrome before 17.0.963.83 allows remote attackers to bypass the Same Origin Policy via vectors involving a "magic iframe."
Family: windows Class: vulnerability
Reference(s): CVE-2011-3056
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14967
 
Oval ID: oval:org.mitre.oval:def:14967
Title: Use-after-free vulnerability in the element wrapper in Google V8, as used in Google Chrome before 17.0.963.65
Description: Use-after-free vulnerability in the element wrapper in Google V8, as used in Google Chrome before 17.0.963.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3031
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14989
 
Oval ID: oval:org.mitre.oval:def:14989
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.65 via vectors related to the handling of table sections.
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of table sections.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3042
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:14996
 
Oval ID: oval:org.mitre.oval:def:14996
Title: Google Chrome before 17.0.963.65 does not properly handle text
Description: Google Chrome before 17.0.963.65 does not properly handle text, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted document.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3040
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:15016
 
Oval ID: oval:org.mitre.oval:def:15016
Title: Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 17.0.963.83 via vectors related to the cross-fade function
Description: Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the cross-fade function.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3051
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:15028
 
Oval ID: oval:org.mitre.oval:def:15028
Title: The WebUI privilege implementation in Google Chrome before 17.0.963.83 does not properly perform isolation
Description: The WebUI privilege implementation in Google Chrome before 17.0.963.83 does not properly perform isolation, which allows remote attackers to bypass intended access restrictions via unspecified vectors.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3054
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:15033
 
Oval ID: oval:org.mitre.oval:def:15033
Title: The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation
Description: The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation, which allows user-assisted remote attackers to have an unspecified impact via a crafted extension.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3055
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:15049
 
Oval ID: oval:org.mitre.oval:def:15049
Title: Google Chrome before 17.0.963.83 does not properly restrict the extension web request API
Description: Google Chrome before 17.0.963.83 does not properly restrict the extension web request API, which allows remote attackers to cause a denial of service (disrupted system requests) via a crafted extension.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3049
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:15072
 
Oval ID: oval:org.mitre.oval:def:15072
Title: Google Chrome before 17.0.963.65 does not properly perform a cast of an unspecified variable during handling of line boxes
Description: Google Chrome before 17.0.963.65 does not properly perform a cast of an unspecified variable during handling of line boxes, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3036
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:15077
 
Oval ID: oval:org.mitre.oval:def:15077
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.65 via vectors involving a flexbox (aka flexible box) in conjunction with the floating of elements.
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a flexbox (aka flexible box) in conjunction with the floating of elements.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3043
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:15094
 
Oval ID: oval:org.mitre.oval:def:15094
Title: Buffer overflow in Skia, as used in Google Chrome before 17.0.963.65
Description: Buffer overflow in Skia, as used in Google Chrome before 17.0.963.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3033
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:15097
 
Oval ID: oval:org.mitre.oval:def:15097
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.65 via vectors involving SVG use elements
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG use elements.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3035
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:
Definition Id: oval:org.mitre.oval:def:15106
 
Oval ID: oval:org.mitre.oval:def:15106
Title: Use-after-free vulnerability in Google Chrome before 17.0.963.65 via vectors related to multi-column handling.
Description: Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to multi-column handling.
Family: windows Class: vulnerability
Reference(s): CVE-2011-3038
Version: 8
Platform(s): Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2008 R2
Microsoft Windows Vista
Microsoft Windows XP
Product(s): Google Chrome
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 279
Application 207
Application 2181
Os 122
Os 1
Os 1

OpenVAS Exploits

Date Description
2012-12-13 Name : SuSE Update for update openSUSE-SU-2012:0466-1 (update)
File : nvt/gb_suse_2012_0466_1.nasl
2012-12-13 Name : SuSE Update for update openSUSE-SU-2012:0374-1 (update)
File : nvt/gb_suse_2012_0374_1.nasl
2012-10-26 Name : Ubuntu Update for webkit USN-1617-1
File : nvt/gb_ubuntu_USN_1617_1.nasl
2012-09-17 Name : Apple iTunes Multiple Vulnerabilities - Sep 12 (Windows)
File : nvt/gb_apple_itunes_mult_vuln_sep12_win.nasl
2012-08-09 Name : Ubuntu Update for webkit USN-1524-1
File : nvt/gb_ubuntu_USN_1524_1.nasl
2012-07-30 Name : Apple Safari Multiple Vulnerabilities - July 2012 (Mac OS X)
File : nvt/gb_apple_safari_mult_vuln_jul12_macosx.nasl
2012-05-18 Name : Apple Safari Webkit Multiple Vulnerabilities - May 12 (Mac OS X)
File : nvt/gb_apple_safari_webkit_mult_vuln_macosx_may12.nasl
2012-05-18 Name : Apple Safari Webkit Multiple Vulnerabilities - May 12 (Windows)
File : nvt/gb_apple_safari_webkit_mult_vuln_win_may12.nasl
2012-04-30 Name : FreeBSD Ports: chromium
File : nvt/freebsd_chromium9.nasl
2012-04-30 Name : Gentoo Security Advisory GLSA 201203-24 (chromium v8)
File : nvt/glsa_201203_24.nasl
2012-04-30 Name : Gentoo Security Advisory GLSA 201203-19 (chromium)
File : nvt/glsa_201203_19.nasl
2012-04-30 Name : FreeBSD Ports: chromium
File : nvt/freebsd_chromium10.nasl
2012-03-26 Name : Google Chrome Multiple Vulnerabilities (Windows) - Mar 12
File : nvt/secpod_google_chrome_mult_vuln_win_mar12.nasl
2012-03-26 Name : Google Chrome Multiple Vulnerabilities (MAC OS X) - Mar 12
File : nvt/secpod_google_chrome_mult_vuln_macosx_mar12.nasl
2012-03-26 Name : Google Chrome Multiple Vulnerabilities (Linux) - Mar 12
File : nvt/secpod_google_chrome_mult_vuln_lin_mar12.nasl
2012-03-20 Name : Google Chrome 'History navigation' Arbitrary Code Execution Vulnerability (Wi...
File : nvt/gb_google_chrome_history_navigation_code_exec_vuln_win.nasl
2012-03-20 Name : Google Chrome 'History navigation' Arbitrary Code Execution Vulnerability (MA...
File : nvt/gb_google_chrome_history_navigation_code_exec_vuln_macosx.nasl
2012-03-20 Name : Google Chrome 'History navigation' Arbitrary Code Execution Vulnerability (Li...
File : nvt/gb_google_chrome_history_navigation_code_exec_vuln_lin.nasl
2012-03-20 Name : Google Chrome 'GPU process' Multiple Vulnerabilities (Windows)
File : nvt/gb_google_chrome_gpu_mult_vuln_win.nasl
2012-03-20 Name : Google Chrome 'GPU process' Multiple Vulnerabilities (MAC OS X)
File : nvt/gb_google_chrome_gpu_mult_vuln_macosx.nasl
2012-03-20 Name : Google Chrome 'GPU process' Multiple Vulnerabilities (Linux)
File : nvt/gb_google_chrome_gpu_mult_vuln_lin.nasl
2012-03-12 Name : FreeBSD Ports: chromium
File : nvt/freebsd_chromium6.nasl
2012-03-12 Name : FreeBSD Ports: chromium
File : nvt/freebsd_chromium5.nasl
2012-03-12 Name : FreeBSD Ports: chromium
File : nvt/freebsd_chromium4.nasl
2012-03-08 Name : Google Chrome Multiple Denial of Service Vulnerabilities - March12 (Mac OS X)
File : nvt/gb_google_chrome_mult_dos_vuln_mar12_macosx.nasl
2012-03-08 Name : Google Chrome Multiple Denial of Service Vulnerabilities - March12 (Windows)
File : nvt/gb_google_chrome_mult_dos_vuln_mar12_win.nasl
2012-03-08 Name : Google Chrome Multiple Denial of Service Vulnerabilities - March12 (Linux)
File : nvt/gb_google_chrome_mult_dos_vuln_mar12_lin.nasl
2012-02-28 Name : webgrind 1.0 (file param) Local File Inclusion Vulnerability
File : nvt/gb_webgrind_lfi_02_2012.nasl

Nessus® Vulnerability Scanner

Date Description
2014-06-13 Name : The remote openSUSE host is missing a security update.
File : openSUSE-2012-215.nasl - Type : ACT_GATHER_INFO
2014-06-13 Name : The remote openSUSE host is missing a security update.
File : openSUSE-2012-207.nasl - Type : ACT_GATHER_INFO
2014-06-13 Name : The remote openSUSE host is missing a security update.
File : openSUSE-2012-165.nasl - Type : ACT_GATHER_INFO
2012-10-26 Name : The remote Ubuntu host is missing one or more security-related patches.
File : ubuntu_USN-1617-1.nasl - Type : ACT_GATHER_INFO
2012-09-13 Name : The remote host contains a multimedia application that has multiple vulnerabi...
File : itunes_10_7_banner.nasl - Type : ACT_GATHER_INFO
2012-09-13 Name : The remote host contains a multimedia application that has multiple vulnerabi...
File : itunes_10_7.nasl - Type : ACT_GATHER_INFO
2012-08-09 Name : The remote Ubuntu host is missing one or more security-related patches.
File : ubuntu_USN-1524-1.nasl - Type : ACT_GATHER_INFO
2012-07-26 Name : The remote host contains a web browser that is affected by several vulnerabil...
File : macosx_Safari6_0.nasl - Type : ACT_GATHER_INFO
2012-06-21 Name : The remote Gentoo host is missing one or more security-related patches.
File : gentoo_GLSA-201203-19.nasl - Type : ACT_GATHER_INFO
2012-06-21 Name : The remote Gentoo host is missing one or more security-related patches.
File : gentoo_GLSA-201203-24.nasl - Type : ACT_GATHER_INFO
2012-05-10 Name : The remote host contains a web browser that is affected by several issues.
File : safari_5_1_7.nasl - Type : ACT_GATHER_INFO
2012-05-10 Name : The remote host contains a web browser that is affected by several vulnerabil...
File : macosx_Safari5_1_7.nasl - Type : ACT_GATHER_INFO
2012-03-30 Name : The remote host contains a web browser that is affected by multiple vulnerabi...
File : google_chrome_18_0_1025_142.nasl - Type : ACT_GATHER_INFO
2012-03-29 Name : The remote FreeBSD host is missing a security-related update.
File : freebsd_pkg_b8f0a391791011e18a4300262d5ed8ee.nasl - Type : ACT_GATHER_INFO
2012-03-23 Name : The remote FreeBSD host is missing a security-related update.
File : freebsd_pkg_330106da740611e1a1d700262d5ed8ee.nasl - Type : ACT_GATHER_INFO
2012-03-22 Name : The remote host contains a web browser that is affected by multiple vulnerabi...
File : google_chrome_17_0_963_83.nasl - Type : ACT_GATHER_INFO
2012-03-14 Name : The remote host contains a web browser that is affected by multiple memory vu...
File : google_chrome_17_0_963_79.nasl - Type : ACT_GATHER_INFO
2012-03-13 Name : The remote host contains a web browser that is affected by multiple vulnerabi...
File : google_chrome_17_0_963_78.nasl - Type : ACT_GATHER_INFO
2012-03-12 Name : The remote FreeBSD host is missing a security-related update.
File : freebsd_pkg_1015e1fe69ce11e1828800262d5ed8ee.nasl - Type : ACT_GATHER_INFO
2012-03-12 Name : The remote FreeBSD host is missing a security-related update.
File : freebsd_pkg_ab1f515d6b6911e1828800262d5ed8ee.nasl - Type : ACT_GATHER_INFO
2012-03-06 Name : The remote FreeBSD host is missing a security-related update.
File : freebsd_pkg_99aef69866ed11e1828800262d5ed8ee.nasl - Type : ACT_GATHER_INFO
2012-03-05 Name : The remote host contains a web browser that is affected by multiple vulnerabi...
File : google_chrome_17_0_963_65.nasl - Type : ACT_GATHER_INFO

Alert History

If you want to see full details history, please login or register.
0
Date Informations
2014-02-17 11:37:16
  • Multiple Updates