PT-2011-3298 · Google+1 · Google Chrome+1
Published
2011-04-15
·
Updated
2020-06-03
·
CVE-2011-1691
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
WebKit before r82222
Google Chrome before 11.0.696.43
Description
The issue arises from the
counterToCSSValue function in the CSS implementation in WebKit, which does not properly handle access to the counterIncrement and counterReset attributes of CSSStyleDeclaration data. This can be exploited by remote attackers using crafted JavaScript code, leading to a denial of service through a NULL pointer dereference and application crash.Recommendations
For WebKit before r82222, update to version r82222 or later to resolve the issue.
For Google Chrome before 11.0.696.43, update to version 11.0.696.43 or later to resolve the issue.
Exploit
Fix
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Google Chrome
Webkit