First published: Sat Sep 17 2011(Updated: )
Google Chrome before 14.0.835.163 does not properly handle boxes, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <14.0.835.163 | |
iStyle @cosme iPhone OS | <5.0 | |
Apple iTunes for Windows | <10.5 | |
Apple Mobile Safari | <5.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-3234 has a severity rating of medium due to its potential for causing a denial of service.
To fix CVE-2011-3234, update Google Chrome to version 14.0.835.163 or later.
CVE-2011-3234 affects Google Chrome versions prior to 14.0.835.163 and certain versions of Apple iOS and Safari.
CVE-2011-3234 can be exploited by remote attackers to execute denial of service attacks through out-of-bounds read manipulation.
There is no specific workaround for CVE-2011-3234; the best practice is to update the affected software.