CVE-2011-3895: Buffer Overflow
Published Nov 11, 2011
·Updated
Heap-based buffer overflow in the Vorbis decoder in Google Chrome before 15.0.874.120 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted stream.
Affected Software
2 affected components
Google Chrome<15.0.874.120
Debian Debian Linux=6.0
Remediation
Patch Available
Event History
Nov 11, 2011
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-3895?
CVE-2011-3895 has a high severity rating due to its potential to cause a denial of service.
2
How do I fix CVE-2011-3895?
To fix CVE-2011-3895, update Google Chrome to version 15.0.874.120 or higher.
3
What software is affected by CVE-2011-3895?
CVE-2011-3895 affects Google Chrome versions before 15.0.874.120 and Debian GNU/Linux 6.0.
4
What type of vulnerability is CVE-2011-3895?
CVE-2011-3895 is classified as a heap-based buffer overflow vulnerability.
5
Can CVE-2011-3895 lead to remote code execution?
CVE-2011-3895 may allow remote attackers to achieve unspecified other impacts, although it is primarily noted for denial of service.