PT-2011-3298 · Google+1 · Google Chrome+1
Publicado
2011-04-15
·
Atualizado
2020-06-03
·
CVE-2011-1691
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
WebKit before r82222
Google Chrome before 11.0.696.43
Description
The issue arises from the
counterToCSSValue function in the CSS implementation in WebKit, which does not properly handle access to the counterIncrement and counterReset attributes of CSSStyleDeclaration data. This can be exploited by remote attackers using crafted JavaScript code, leading to a denial of service through a NULL pointer dereference and application crash.Recommendations
For WebKit before r82222, update to version r82222 or later to resolve the issue.
For Google Chrome before 11.0.696.43, update to version 11.0.696.43 or later to resolve the issue.
Exploit
Correção
NULL Pointer Dereference
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Google Chrome
Webkit