VulnerabilityModified
CVE-2011-1799
Google Chrome before 11.0.696.68 does not properly perform casts of variables during interaction with the WebKit engine, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
MEDIUM 6.8EPSS 1.02%
Does this matter?
Lower severity and a low EPSS score (1.02%). Track it; it rarely justifies an emergency change on its own.
Description
Google Chrome before 11.0.696.68 does not properly perform casts of variables during interaction with the WebKit engine, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
- CVSS 2.0
- 6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
- EPSS
- 1.02% probability · 61th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-704
- Affected
- google/chrome · debian/debian linux
- Source
- chrome-cve-admin@google.com
References
- http://code.google.com/p/chromium/issues/detail?id=64046
- http://googlechromereleases.blogspot.com/2011/05/stable-channel-update.html
- http://www.debian.org/security/2011/dsa-2245
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14029
- http://code.google.com/p/chromium/issues/detail?id=64046
- http://googlechromereleases.blogspot.com/2011/05/stable-channel-update.html
- http://www.debian.org/security/2011/dsa-2245
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14029
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.