First published: Fri Jan 14 2011(Updated: )
Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle speech data, which allows remote attackers to execute arbitrary code via unspecified vectors that lead to a "stale pointer."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome OS | <8.0.552.344 | |
Google Chrome | <8.0.552.237 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0485 has a high severity rating as it allows remote attackers to execute arbitrary code.
To fix CVE-2011-0485, upgrade Google Chrome to version 8.0.552.238 or later for Chrome, and version 8.0.552.345 or later for Chrome OS.
CVE-2011-0485 affects Google Chrome versions prior to 8.0.552.237 and Chrome OS versions prior to 8.0.552.344.
CVE-2011-0485 is a vulnerability in the handling of speech data that can lead to stale pointer dereferencing.
Yes, CVE-2011-0485 can be exploited remotely, allowing attackers to execute code without user interaction.