CVE-2011-3049: Medium severity google chrome (trace event) vulnerability
Published Mar 23, 2012
·Updated
Google Chrome before 17.0.963.83 does not properly restrict the extension web request API, which allows remote attackers to cause a denial of service (disrupted system requests) via a crafted extension.
Affected Software
2 affected components
Google Chrome<17.0.963.83
openSUSE openSUSE=12.1
Event History
Mar 23, 2012
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-3049?
CVE-2011-3049 is classified as a denial of service vulnerability.
2
How do I fix CVE-2011-3049?
To mitigate CVE-2011-3049, users should update Google Chrome to version 17.0.963.83 or later.
3
What versions of software are affected by CVE-2011-3049?
CVE-2011-3049 affects Google Chrome versions before 17.0.963.83 and openSUSE version 12.1.
4
Can CVE-2011-3049 be exploited remotely?
Yes, CVE-2011-3049 can be exploited remotely by using a crafted extension.
5
What impact does CVE-2011-3049 have on users?
CVE-2011-3049 can disrupt system requests, leading to a denial of service for users.