Vulnerabilities > Google > Chrome > 14.0.835.4

DATE CVE VULNERABILITY TITLE RISK
2012-03-05 CVE-2011-3033 Classic Buffer Overflow vulnerability in Google Chrome
Buffer overflow in Skia, as used in Google Chrome before 17.0.963.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
network
low complexity
google opensuse CWE-120
7.5
2012-03-05 CVE-2011-3032 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of SVG values.
6.8
2012-03-05 CVE-2011-3031 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in the element wrapper in Google V8, as used in Google Chrome before 17.0.963.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
6.8
2012-02-16 CVE-2011-3027 Incorrect Type Conversion OR Cast vulnerability in Google Chrome
Google Chrome before 17.0.963.56 does not properly perform a cast of an unspecified variable during handling of columns, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.
network
google apple CWE-704
4.3
2012-02-16 CVE-2011-3026 Integer Overflow OR Wraparound vulnerability in Google Chrome
Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.
6.8
2012-02-16 CVE-2011-3025 Out-Of-Bounds Read vulnerability in Google Chrome
Google Chrome before 17.0.963.56 does not properly parse H.264 data, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
network
google CWE-125
4.3
2012-02-16 CVE-2011-3024 Improper Certificate Validation vulnerability in Google Chrome
Google Chrome before 17.0.963.56 allows remote attackers to cause a denial of service (application crash) via an empty X.509 certificate.
network
google CWE-295
4.3
2012-02-16 CVE-2011-3023 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in Google Chrome before 17.0.963.56 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to drag-and-drop operations.
network
google CWE-416
6.8
2012-02-16 CVE-2011-3022 Cleartext Transmission of Sensitive Information vulnerability in Google Chrome
translate/translate_manager.cc in Google Chrome before 17.0.963.56 and 19.x before 19.0.1036.7 uses an HTTP session to exchange data for translation, which allows remote attackers to obtain sensitive information by sniffing the network.
network
low complexity
google CWE-319
5.0
2012-02-16 CVE-2011-3021 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in Google Chrome before 17.0.963.56 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to subframe loading.
network
low complexity
google apple CWE-416
7.5