10
CVSSv2

CVE-2011-3079

Published: 01/05/2012 Updated: 30/10/2018
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Inter-process Communication (IPC) implementation in Google Chrome prior to 18.0.1025.168, as used in Mozilla Firefox prior to 38.0 and other products, does not properly validate messages, which has unspecified impact and attack vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

opensuse opensuse 13.2

opensuse opensuse 13.1

mozilla firefox

google chrome

mozilla thunderbird

mozilla seamonkey

mozilla firefox esr

Vendor Advisories

Multiple security issues have been found in Iceweasel, Debian's version of the Mozilla Firefox web browser: Multiple memory safety errors, buffer overflows and use-after-frees may lead to the execution of arbitrary code, privilege escalation or denial of service For the oldstable distribution (wheezy), these problems have been fixed in version 31 ...
Mozilla Foundation Security Advisory 2015-57 Privilege escalation through IPC channel messages Announced May 12, 2015 Reporter Jed Davis, Christoph Diehl Impact High Products Firefox, Firefox ESR, SeaMonkey, Thunderbird ...
Mozilla Foundation Security Advisory 2019-03 Security vulnerabilities fixed in Thunderbird 605 Announced January 29, 2019 Impact critical Products Thunderbird Fixed in Thunderbird 605 ...
Mozilla Foundation Security Advisory 2019-02 Security vulnerabilities fixed in Firefox ESR 605 Announced January 29, 2019 Impact critical Products Firefox ESR Fixed in Firefox ESR 605 ...
Mozilla Foundation Security Advisory 2019-01 Security vulnerabilities fixed in Firefox 65 Announced January 29, 2019 Impact critical Products Firefox Fixed in Firefox 65 ...