FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2011-3059

This CVE name corresponds to:

Entered Topic
2012-03-28 chromium -- multiple vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2011-3059
Phase Assigned(20110809)

Description

Google Chrome before 18.0.1025.142 does not properly handle SVG text elements, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

References

Source Reference
CONFIRM http://code.google.com/p/chromium/issues/detail?id=112317
CONFIRM http://googlechromereleases.blogspot.com/2012/03/stable-channel-release-and-beta-channel.html
CONFIRM http://support.apple.com/kb/HT5400
CONFIRM http://support.apple.com/kb/HT5485
CONFIRM http://support.apple.com/kb/HT5503
APPLE APPLE-SA-2012-07-25-1
APPLE APPLE-SA-2012-09-12-1
APPLE APPLE-SA-2012-09-19-1
BID 52762
OVAL oval:org.mitre.oval:def:15200
SECTRACK 1026877
SECUNIA 48618
SECUNIA 48691
SECUNIA 48763
XF chrome-svg-text-code-execution(74409)