CVE-2011-1798

rendering/svg/RenderSVGText.cpp in WebCore in WebKit in Google Chrome before 11.0.696.65 does not properly perform a cast of an unspecified variable during an attempt to handle a block child, which allows remote attackers to cause a denial of service (application crash) or possibly have unknown other impact via a crafted text element in an SVG document.
Configurations

Configuration 1 (hide)

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

History

07 Nov 2023, 02:07

Type Values Removed Values Added
References (CONFIRM) http://launchpad.net/bugs/778822 - () http://launchpad.net/bugs/778822 -
References (CONFIRM) http://crbug.com/79595 - Vendor Advisory () http://crbug.com/79595 -
References (CONFIRM) http://trac.webkit.org/changeset/84085 - () http://trac.webkit.org/changeset/84085 -

Information

Published : 2014-12-26 02:59

Updated : 2024-02-28 12:20


NVD link : CVE-2011-1798

Mitre link : CVE-2011-1798

CVE.ORG link : CVE-2011-1798


JSON object : View

Products Affected

google

  • chrome
CWE
CWE-20

Improper Input Validation