VulnerabilityModified
CVE-2011-1186
Google Chrome before 10.0.648.127 on Linux does not properly handle parallel execution of calls to the print method, which might allow remote attackers to cause a denial of service (application crash) via crafted JavaScript code.
MEDIUM 5.0EPSS 2.69%
Does this matter?
Lower severity and a low EPSS score (2.69%). Track it; it rarely justifies an emergency change on its own.
Description
Google Chrome before 10.0.648.127 on Linux does not properly handle parallel execution of calls to the print method, which might allow remote attackers to cause a denial of service (application crash) via crafted JavaScript code.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 2.69% probability · 85th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- google/chrome
- Source
- cve@mitre.org
References
- http://code.google.com/p/chromium/issues/detail?id=66962Exploit, Issue Tracking, Patch, Vendor Advisory
- http://googlechromereleases.blogspot.com/2011/03/chrome-stable-release.htmlVendor Advisory
- http://www.securityfocus.com/bid/46785Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2011/0628Permissions Required
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65950Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14255Third Party Advisory
- http://code.google.com/p/chromium/issues/detail?id=66962Exploit, Issue Tracking, Patch, Vendor Advisory
- http://googlechromereleases.blogspot.com/2011/03/chrome-stable-release.htmlVendor Advisory
- http://www.securityfocus.com/bid/46785Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2011/0628Permissions Required
- https://exchange.xforce.ibmcloud.com/vulnerabilities/65950Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14255Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.