SB2011051601 - Multiple vulnerabilities in Techland Chrome



SB2011051601 - Multiple vulnerabilities in Techland Chrome

Published: May 16, 2011 Updated: August 11, 2020

Security Bulletin ID SB2011051601
Severity
High
Patch available
YES
Number of vulnerabilities 5
Exploitation vector Remote access
Highest impact Code execution

Breakdown by Severity

High 40% Medium 60%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 5 secuirty vulnerabilities.


1) Input validation error (CVE-ID: CVE-2011-1804)

The vulnerability allows a remote non-authenticated attacker to read and manipulate data.

rendering/RenderBox.cpp in WebCore in WebKit before r86862, as used in Google Chrome before 11.0.696.71, does not properly render floats, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."


2) Buffer overflow (CVE-ID: CVE-2011-1806)

The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.

Google Chrome before 11.0.696.71 does not properly implement the GPU command buffer, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.


3) Out-of-bounds write (CVE-ID: CVE-2011-1807)

The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.

Google Chrome before 11.0.696.71 does not properly handle blobs, which allows remote attackers to execute arbitrary code via unspecified vectors that trigger an out-of-bounds write.


4) Input validation error (CVE-ID: CVE-2011-1801)

The vulnerability allows a remote non-authenticated attacker to manipulate data.

Unspecified vulnerability in Google Chrome before 11.0.696.71 allows remote attackers to bypass the pop-up blocker via unknown vectors.


5) Integer overflow (CVE-ID: CVE-2011-1800)

The vulnerability allows a remote non-authenticated attacker to read and manipulate data.

Multiple integer overflows in the SVG Filters implementation in WebCore in WebKit in Google Chrome before 11.0.696.68 allow remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.


Remediation

Install update from vendor's website.