CVE-2011-3894

Google Chrome before 15.0.874.120 does not properly perform VP8 decoding, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted stream.
Configurations

Configuration 1 (hide)

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

History

21 Nov 2024, 01:31

Type Values Removed Values Added
References () http://code.google.com/p/chromium/issues/detail?id=101172 - () http://code.google.com/p/chromium/issues/detail?id=101172 -
References () http://googlechromereleases.blogspot.com/2011/11/stable-channel-update.html - () http://googlechromereleases.blogspot.com/2011/11/stable-channel-update.html -
References () http://secunia.com/advisories/46933 - () http://secunia.com/advisories/46933 -
References () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14166 - () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14166 -

Information

Published : 2011-11-11 11:55

Updated : 2024-11-21 01:31


NVD link : CVE-2011-3894

Mitre link : CVE-2011-3894

CVE.ORG link : CVE-2011-3894


JSON object : View

Products Affected

google

  • chrome
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer