CVE-2011-3106
critical
CVSS v3
โ
CVSS v4 NEW
โ
VIR risk
10.0
Description
The WebSockets implementation in Google Chrome before 19.0.1084.52 does not properly handle use of SSL, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
Predictions
Exploit likelihood
20%
Patch ETA
โ
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
No mitigations published for this CVE yet.
The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ if you've already worked around this in production โ publish your fix to the community-verified tier.
โ Propose a mitigation on Community โ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here withsource_tier=community-verified.
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| chrome | {"endIncluding":"19.0.1084.51"} | | |
| chrome | 19.0.1028.0 | | |
| chrome | 19.0.1029.0 | | |
| chrome | 19.0.1030.0 | | |
| chrome | 19.0.1031.0 | | |
| chrome | 19.0.1032.0 | | |
| chrome | 19.0.1033.0 | | |
| chrome | 19.0.1034.0 | | |
| chrome | 19.0.1035.0 | | |
| chrome | 19.0.1036.0 | | |
| chrome | 19.0.1036.2 | | |
| chrome | 19.0.1036.3 | | |
| chrome | 19.0.1036.4 | | |
| chrome | 19.0.1036.6 | | |
| chrome | 19.0.1036.7 | | |
| chrome | 19.0.1037.0 | | |
| chrome | 19.0.1038.0 | | |
| chrome | 19.0.1039.0 | | |
| chrome | 19.0.1040.0 | | |
| chrome | 19.0.1041.0 | | |
| chrome | 19.0.1042.0 | | |
| chrome | 19.0.1043.0 | | |
| chrome | 19.0.1044.0 | | |
| chrome | 19.0.1045.0 | | |
| chrome | 19.0.1046.0 | | |
| chrome | 19.0.1047.0 | | |
| chrome | 19.0.1048.0 | | |
| chrome | 19.0.1049.0 | | |
| chrome | 19.0.1049.1 | | |
| chrome | 19.0.1049.2 | | |
| chrome | 19.0.1049.3 | | |
| chrome | 19.0.1050.0 | | |
| chrome | 19.0.1051.0 | | |
| chrome | 19.0.1052.0 | | |
| chrome | 19.0.1053.0 | | |
| chrome | 19.0.1054.0 | | |
| chrome | 19.0.1055.0 | | |
| chrome | 19.0.1055.1 | | |
| chrome | 19.0.1055.2 | | |
| chrome | 19.0.1055.3 | | |
| chrome | 19.0.1056.0 | | |
| chrome | 19.0.1056.1 | | |
| chrome | 19.0.1057.0 | | |
| chrome | 19.0.1057.1 | | |
| chrome | 19.0.1057.3 | | |
| chrome | 19.0.1058.0 | | |
| chrome | 19.0.1058.1 | | |
| chrome | 19.0.1059.0 | | |
| chrome | 19.0.1060.0 | | |
| chrome | 19.0.1060.1 | | |
| chrome | 19.0.1061.0 | | |
| chrome | 19.0.1061.1 | | |
| chrome | 19.0.1062.0 | | |
| chrome | 19.0.1062.1 | | |
| chrome | 19.0.1063.0 | | |
| chrome | 19.0.1063.1 | | |
| chrome | 19.0.1064.0 | | |
| chrome | 19.0.1065.0 | | |
| chrome | 19.0.1066.0 | | |
| chrome | 19.0.1067.0 | | |
| chrome | 19.0.1068.0 | | |
| chrome | 19.0.1068.1 | | |
| chrome | 19.0.1069.0 | | |
| chrome | 19.0.1070.0 | | |
| chrome | 19.0.1071.0 | | |
| chrome | 19.0.1072.0 | | |
| chrome | 19.0.1073.0 | | |
| chrome | 19.0.1074.0 | | |
| chrome | 19.0.1075.0 | | |
| chrome | 19.0.1076.0 | | |
| chrome | 19.0.1076.1 | | |
| chrome | 19.0.1077.0 | | |
| chrome | 19.0.1077.1 | | |
| chrome | 19.0.1077.2 | | |
| chrome | 19.0.1077.3 | | |
| chrome | 19.0.1078.0 | | |
| chrome | 19.0.1079.0 | | |
| chrome | 19.0.1080.0 | | |
| chrome | 19.0.1081.0 | | |
| chrome | 19.0.1081.2 | | |
| chrome | 19.0.1082.0 | | |
| chrome | 19.0.1082.1 | | |
| chrome | 19.0.1083.0 | | |
| chrome | 19.0.1084.0 | | |
| chrome | 19.0.1084.1 | | |
| chrome | 19.0.1084.2 | | |
| chrome | 19.0.1084.3 | | |
| chrome | 19.0.1084.4 | | |
| chrome | 19.0.1084.5 | | |
| chrome | 19.0.1084.6 | | |
| chrome | 19.0.1084.7 | | |
| chrome | 19.0.1084.8 | | |
| chrome | 19.0.1084.9 | | |
| chrome | 19.0.1084.10 | | |
| chrome | 19.0.1084.11 | | |
| chrome | 19.0.1084.12 | | |
| chrome | 19.0.1084.13 | | |
| chrome | 19.0.1084.14 | | |
| chrome | 19.0.1084.15 | | |
| chrome | 19.0.1084.16 | | |
| chrome | 19.0.1084.17 | | |
| chrome | 19.0.1084.18 | | |
| chrome | 19.0.1084.19 | | |
| chrome | 19.0.1084.20 | | |
| chrome | 19.0.1084.21 | | |
| chrome | 19.0.1084.22 | | |
| chrome | 19.0.1084.23 | | |
| chrome | 19.0.1084.24 | | |
| chrome | 19.0.1084.25 | | |
| chrome | 19.0.1084.26 | | |
| chrome | 19.0.1084.27 | | |
| chrome | 19.0.1084.28 | | |
| chrome | 19.0.1084.29 | | |
| chrome | 19.0.1084.30 | | |
| chrome | 19.0.1084.31 | | |
| chrome | 19.0.1084.32 | | |
| chrome | 19.0.1084.33 | | |
| chrome | 19.0.1084.35 | | |
| chrome | 19.0.1084.36 | | |
| chrome | 19.0.1084.37 | | |
| chrome | 19.0.1084.38 | | |
| chrome | 19.0.1084.39 | | |
| chrome | 19.0.1084.40 | | |
| chrome | 19.0.1084.41 | | |
| chrome | 19.0.1084.42 | | |
| chrome | 19.0.1084.43 | | |
| chrome | 19.0.1084.44 | | |
| chrome | 19.0.1084.45 | | |
| chrome | 19.0.1084.46 | | |
| chrome | 19.0.1084.47 | | |
| chrome | 19.0.1084.48 | | |
| chrome | 19.0.1084.50 | |
References
- http://code.google.com/p/chromium/issues/detail?id=122654
- http://googlechromereleases.blogspot.com/2012/05/stable-channel-update_23.html
- http://osvdb.org/82251
- http://secunia.com/advisories/49277
- http://secunia.com/advisories/49306
- http://security.gentoo.org/glsa/glsa-201205-04.xml
- http://www.securityfocus.com/bid/53679
- http://www.securitytracker.com/id?1027098
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15470
- http://code.google.com/p/chromium/issues/detail?id=122654
- http://googlechromereleases.blogspot.com/2012/05/stable-channel-update_23.html
- http://osvdb.org/82251
- http://secunia.com/advisories/49277
- http://secunia.com/advisories/49306
- http://security.gentoo.org/glsa/glsa-201205-04.xml
- http://www.securityfocus.com/bid/53679
- http://www.securitytracker.com/id?1027098
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15470
CWEs
CWE-119
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.