CVE-2011-3103
https://notcve.org/view.php?id=CVE-2011-3103
Google V8, as used in Google Chrome before 19.0.1084.52, does not properly perform garbage collection, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted JavaScript code. Google V8, como se utiliza en Google Chrome antes de v19.0.1084.52, no realiza correctamente la recolección de basura, lo que permite a atacantes remotos provocar una denegación de servicio (caída de aplicación) o posiblemente tener un impacto no especificado a través de código JavaScript manipulado. • http://code.google.com/p/chromium/issues/detail?id=117409 http://googlechromereleases.blogspot.com/2012/05/stable-channel-update_23.html http://secunia.com/advisories/49277 http://secunia.com/advisories/49306 http://security.gentoo.org/glsa/glsa-201205-04.xml http://www.securityfocus.com/bid/53679 http://www.securitytracker.com/id?1027098 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15095 • CWE-399: Resource Management Errors •
CVE-2011-3111
https://notcve.org/view.php?id=CVE-2011-3111
Google V8, as used in Google Chrome before 19.0.1084.52, allows remote attackers to cause a denial of service (invalid read operation) via unspecified vectors. Google V8, como se utiliza en Google Chrome antes de v19.0.1084.52, permite a atacantes remotos provocar una denegación de servicio (operación no válida de lectura) a través de vectores no especificados. • http://code.google.com/p/chromium/issues/detail?id=126414 http://googlechromereleases.blogspot.com/2012/05/stable-channel-update_23.html http://secunia.com/advisories/49277 http://secunia.com/advisories/49306 http://security.gentoo.org/glsa/glsa-201205-04.xml http://www.securityfocus.com/bid/53679 http://www.securitytracker.com/id?1027098 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15549 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2011-3105
https://notcve.org/view.php?id=CVE-2011-3105
Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 19.0.1084.52 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the :first-letter pseudo-element. Vulnerabilidad de error en la gestión de recursos en la implementación de las Hojas de Estilo en Cascada (CSS) en Google Chrome antes de 19.0.1084.52, permite a atacantes remotos causar una denegación de servicio o posiblemente tener otro impacto no especificado a través de vectores relacionados con el pseudo-elemento: first-letter. • http://code.google.com/p/chromium/issues/detail?id=120912 http://googlechromereleases.blogspot.com/2012/05/stable-channel-update_23.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00001.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00005.html http://osvdb.org/82242 http://secunia.com/advisories/49277 http://secunia.com/advisories/49306 http://security.gentoo.org/glsa/glsa • CWE-399: Resource Management Errors •
CVE-2011-3090
https://notcve.org/view.php?id=CVE-2011-3090
Race condition in Google Chrome before 19.0.1084.46 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to worker processes. Condición de carrera en Google Chrome anterior a v19.0.1084.46 permite a atacantes remotos causar una denegación de servicio o tener un impacto no especificado a través de vectores relacionados con los procesos de trabajo. • http://code.google.com/p/chromium/issues/detail?id=121223 http://googlechromereleases.blogspot.com/2012/05/stable-channel-update.html http://lists.apple.com/archives/security-announce/2012/Jul/msg00000.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00001.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00017.html http://security.gentoo.org/glsa/glsa-201205-03.xml http://support. • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •
CVE-2011-3102 – libxml: An off-by-one out-of-bounds write by XPointer part evaluation
https://notcve.org/view.php?id=CVE-2011-3102
Off-by-one error in libxml2, as used in Google Chrome before 19.0.1084.46 and other products, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via unknown vectors. Error de superación de límite (off-by-one) en libxml2, como el usado en Google Chrome anteriores a v19.0.1084.46, permite a atacantes remotos provocar una denegación de servicio (escritura fuera del límite) y posiblemente tener otros impactos no determinados a través de vectores no especificados. • http://code.google.com/p/chromium/issues/detail?id=125462 http://googlechromereleases.blogspot.com/2012/05/stable-channel-update.html http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html http://lists.opensuse.org/opensuse-security-announce/2012-05/msg00017.html http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00002.html http://rhn.redhat.com/errata/RHSA-2013-0217.html http://secunia.c • CWE-189: Numeric Errors CWE-787: Out-of-bounds Write •