Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.1.1.1.2011.2189
Category:Debian Local Security Checks
Title:Debian: Security Advisory (DSA-2189-1)
Summary:The remote host is missing an update for the Debian 'chromium-browser' package(s) announced via the DSA-2189-1 advisory.
Description:Summary:
The remote host is missing an update for the Debian 'chromium-browser' package(s) announced via the DSA-2189-1 advisory.

Vulnerability Insight:
Several vulnerabilities were discovered in the Chromium browser. The Common Vulnerabilities and Exposures project identifies the following problems:

CVE-2011-1108

Google Chrome before 9.0.597.107 does not properly implement JavaScript dialogs, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted HTML document.

CVE-2011-1109

Google Chrome before 9.0.597.107 does not properly process nodes in Cascading Style Sheets (CSS) stylesheets, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a stale pointer.

CVE-2011-1113

Google Chrome before 9.0.597.107 on 64-bit Linux platforms does not properly perform pickle deserialization, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

CVE-2011-1114

Google Chrome before 9.0.597.107 does not properly handle tables, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a stale node.

CVE-2011-1115

Google Chrome before 9.0.597.107 does not properly render tables, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a stale pointer.

CVE-2011-1121

Integer overflow in Google Chrome before 9.0.597.107 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a TEXTAREA element.

CVE-2011-1122

The WebGL implementation in Google Chrome before 9.0.597.107 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors, aka Issue 71960.

In addition, this upload fixes the following issues (they don't have a CVE id yet):

Out-of-bounds read in text searching. [69640]

Memory corruption in SVG fonts. [72134]

Memory corruption with counter nodes. [69628]

Stale node in box layout. [70027]

Cross-origin error message leak with workers. [70336]

Stale pointer in table painting. [72028]

Stale pointer with SVG cursors. [73746]

For the stable distribution (squeeze), these problems have been fixed in version 6.0.472.63~
r59945-5+squeeze3.

For the testing distribution (wheezy), these problems will be fixed soon.

For the unstable distribution (sid), these problems have been fixed version 10.0.648.127~
r76697-1.

We recommend that you upgrade your chromium-browser packages.

Affected Software/OS:
'chromium-browser' package(s) on Debian 6.

Solution:
Please install the updated package(s).

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2011-1108
BugTraq ID: 46614
http://www.securityfocus.com/bid/46614
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14345
XForce ISS Database: google-chrome-dialogs-unspecified(65726)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65726
Common Vulnerability Exposure (CVE) ID: CVE-2011-1109
http://lists.apple.com/archives/security-announce/2011//Jul/msg00002.html
http://lists.apple.com/archives/Security-announce/2011//Oct/msg00000.html
http://lists.apple.com/archives/Security-announce/2011//Oct/msg00001.html
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14422
XForce ISS Database: google-chrome-stylesheet-dos(65727)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65727
Common Vulnerability Exposure (CVE) ID: CVE-2011-1113
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13935
XForce ISS Database: google-chrome-pickle-dos(65731)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65731
Common Vulnerability Exposure (CVE) ID: CVE-2011-1114
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14404
XForce ISS Database: google-chrome-table-dos(65732)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65732
Common Vulnerability Exposure (CVE) ID: CVE-2011-1115
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13641
XForce ISS Database: google-chrome-table-rendering-dos(65733)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65733
Common Vulnerability Exposure (CVE) ID: CVE-2011-1121
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14685
XForce ISS Database: google-chrome-textarea-code-execution(65739)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65739
Common Vulnerability Exposure (CVE) ID: CVE-2011-1122
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14559
XForce ISS Database: google-chrome-webgl-dos(65740)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65740
Common Vulnerability Exposure (CVE) ID: CVE-2011-1188
BugTraq ID: 46785
http://www.securityfocus.com/bid/46785
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14493
http://www.vupen.com/english/advisories/2011/0628
XForce ISS Database: google-counter-nodes-code-exec(65952)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65952
Common Vulnerability Exposure (CVE) ID: CVE-2011-1189
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14370
XForce ISS Database: google-box-layouts-dos(65953)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65953
Common Vulnerability Exposure (CVE) ID: CVE-2011-1190
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14398
XForce ISS Database: google-chrome-info-disc(65954)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65954
Common Vulnerability Exposure (CVE) ID: CVE-2011-1197
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14703
XForce ISS Database: google-table-painting-dos(65961)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65961
Common Vulnerability Exposure (CVE) ID: CVE-2011-1203
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14355
XForce ISS Database: google-svg-cursor-dos(65967)
https://exchange.xforce.ibmcloud.com/vulnerabilities/65967
CopyrightCopyright (C) 2023 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.