Google Security Advisories · March 2012 — Google Security Advisories
39 advisories 39 CVEs

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2012-03. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

CVE-2012-0768

Open SourcePoC exploitHIGH2012-03-05

The Matrix3D component in Adobe Flash Player before 10.3.183.16 and 11.x before 11.1.102.63 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.7 on Android 2.x and 3.x; and before 11.1.115.7 on Android 4.x allows attackers to execute arbitrary c...

CVEs:CVE-2012-0768

Affected products

ProductStatusVendorPackageEcosystem
flash_player affected adobe
flash_player_for_android affected adobe
Upstream advisory

CVE-2012-0769

Open SourcePoC exploitHIGH2012-03-05

Adobe Flash Player before 10.3.183.16 and 11.x before 11.1.102.63 on Windows, Mac OS X, Linux, and Solaris; before 11.1.111.7 on Android 2.x and 3.x; and before 11.1.115.7 on Android 4.x does not properly handle integers, which allows attackers to obta...

CVEs:CVE-2012-0769

Affected products

ProductStatusVendorPackageEcosystem
flash_player affected adobe
flash_player_for_android affected adobe
Upstream advisory

CVE-2011-3045

GooglePoC exploitCRITICAL2012-03-22

Integer signedness error in the png_inflate function in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote attackers to cause a denial of service (application crash) or possibly execu...

CVEs:CVE-2011-3045

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
debian_linux affected debian
enterprise_linux affected redhat
enterprise_linux_desktop affected redhat
enterprise_linux_server_aus affected redhat
enterprise_linux_server_eus affected redhat
enterprise_linux_workstation affected redhat
fedora affected fedoraproject
gluster_storage affected redhat
libpng affected libpng
opensuse affected opensuse
storage affected redhat
storage_for_public_cloud affected redhat
Upstream advisory

CVE-2011-3031

GooglePoC exploitCRITICAL2012-03-05

Use-after-free vulnerability in the element wrapper in Google V8, as used in Google Chrome before 17.0.963.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

CVEs:CVE-2011-3031

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
opensuse affected opensuse
Upstream advisory

CVE-2011-3033

GooglePoC exploitCRITICAL2012-03-05

Buffer overflow in Skia, as used in Google Chrome before 17.0.963.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

CVEs:CVE-2011-3033

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
opensuse affected opensuse
Upstream advisory

CVE-2011-3038

GooglePoC exploitCRITICAL2012-03-04

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to multi-column handling.

CVEs:CVE-2011-3038

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3032

GooglePoC exploitCRITICAL2012-03-04

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of SVG values.

CVEs:CVE-2011-3032

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3037

GooglePoC exploitHIGH2012-03-04

Google Chrome before 17.0.963.65 does not properly perform casts of unspecified variables during the splitting of anonymous blocks, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.

CVEs:CVE-2011-3037

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3042

GooglePoC exploitCRITICAL2012-03-04

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of table sections.

CVEs:CVE-2011-3042

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3034

GooglePoC exploitCRITICAL2012-03-04

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving an SVG document.

CVEs:CVE-2011-3034

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3035

GooglePoC exploitCRITICAL2012-03-04

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG use elements.

CVEs:CVE-2011-3035

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3036

GooglePoC exploitHIGH2012-03-04

Google Chrome before 17.0.963.65 does not properly perform a cast of an unspecified variable during handling of line boxes, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.

CVEs:CVE-2011-3036

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3039

GooglePoC exploitCRITICAL2012-03-04

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to quote handling.

CVEs:CVE-2011-3039

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3040

GooglePoC exploitHIGH2012-03-04

Google Chrome before 17.0.963.65 does not properly handle text, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted document.

CVEs:CVE-2011-3040

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3041

GooglePoC exploitCRITICAL2012-03-04

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of class attributes.

CVEs:CVE-2011-3041

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3043

GooglePoC exploitCRITICAL2012-03-04

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a flexbox (aka flexible box) in conjunction with the floating of eleme...

CVEs:CVE-2011-3043

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3044

GooglePoC exploitCRITICAL2012-03-04

Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG animation elements.

CVEs:CVE-2011-3044

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2012-1845

GoogleEPSS <= 49%HIGH2012-03-22

Use-after-free vulnerability in Google Chrome 17.0.963.66 and earlier allows remote attackers to bypass the DEP and ASLR protection mechanisms, and execute arbitrary code, via unspecified vectors, as demonstrated by VUPEN during a Pwn2Own competition a...

CVEs:CVE-2012-1845

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2011-3046

GoogleEPSS <= 49%HIGH2012-03-08

The extension subsystem in Google Chrome before 17.0.963.78 does not properly handle history navigation, which allows remote attackers to execute arbitrary code by leveraging a "Universal XSS (UXSS)" issue.

CVEs:CVE-2011-3046

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2012-1846

GoogleEPSS <= 49%HIGH2012-03-22

Google Chrome 17.0.963.66 and earlier allows remote attackers to bypass the sandbox protection mechanism by leveraging access to a sandboxed process, as demonstrated by VUPEN during a Pwn2Own competition at CanSecWest 2012. NOTE: the primary affected ...

CVEs:CVE-2012-1846

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2011-3047

GoogleEPSS <= 49%HIGH2012-03-10

The GPU process in Google Chrome before 17.0.963.79 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) by leveraging an error in the plug-in loading mechanism.

CVEs:CVE-2011-3047

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
opensuse affected opensuse
Upstream advisory

CVE-2011-3060

GoogleEPSS <= 49%HIGH2012-03-28

Google Chrome before 18.0.1025.142 does not properly handle text fragments, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

CVEs:CVE-2011-3060

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
safari affected apple
Upstream advisory

CVE-2011-3050

GoogleEPSS <= 49%CRITICAL2012-03-21

Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the :first-letter ...

CVEs:CVE-2011-3050

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3064

GoogleEPSS <= 49%CRITICAL2012-03-28

Use-after-free vulnerability in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to SVG clipping.

CVEs:CVE-2011-3064

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
safari affected apple
Upstream advisory

CVE-2011-3049

GoogleEPSS <= 49%HIGH2012-03-23

Google Chrome before 17.0.963.83 does not properly restrict the extension web request API, which allows remote attackers to cause a denial of service (disrupted system requests) via a crafted extension.

CVEs:CVE-2011-3049

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
opensuse affected opensuse
Upstream advisory

CVE-2011-3052

GoogleEPSS <= 49%CRITICAL2012-03-22

The WebGL implementation in Google Chrome before 17.0.963.83 does not properly handle CANVAS elements, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

CVEs:CVE-2011-3052

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
opensuse affected opensuse
Upstream advisory

CVE-2011-3065

GoogleEPSS <= 49%CRITICAL2012-03-30

Skia, as used in Google Chrome before 18.0.1025.142, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

CVEs:CVE-2011-3065

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2011-3059

GoogleEPSS <= 49%HIGH2012-03-28

Google Chrome before 18.0.1025.142 does not properly handle SVG text elements, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

CVEs:CVE-2011-3059

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
safari affected apple
Upstream advisory

CVE-2011-3054

GoogleEPSS <= 49%MEDIUM2012-03-22

The WebUI privilege implementation in Google Chrome before 17.0.963.83 does not properly perform isolation, which allows remote attackers to bypass intended access restrictions via unspecified vectors.

CVEs:CVE-2011-3054

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
opensuse affected opensuse
Upstream advisory

CVE-2011-3051

GoogleEPSS <= 49%CRITICAL2012-03-22

Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the cross-fade fun...

CVEs:CVE-2011-3051

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
opensuse affected opensuse
Upstream advisory

CVE-2011-3053

GoogleEPSS <= 49%CRITICAL2012-03-21

Use-after-free vulnerability in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to block splitting.

CVEs:CVE-2011-3053

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
itunes affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3057

GoogleEPSS <= 49%HIGH2012-03-22

Google V8, as used in Google Chrome before 17.0.963.83, allows remote attackers to cause a denial of service via vectors that trigger an invalid read operation.

CVEs:CVE-2011-3057

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2011-3062

GoogleEPSS <= 49%HIGH2012-03-30

Off-by-one error in the OpenType Sanitizer in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted OpenType file.

CVEs:CVE-2011-3062

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
firefox affected mozilla
seamonkey affected mozilla
thunderbird affected mozilla
thunderbird_esr affected mozilla
Upstream advisory

CVE-2011-3055

GoogleEPSS <= 49%MEDIUM2012-03-22

The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation, which allows user-assisted remote attackers to have an unspecified impact via a crafted extension.

CVEs:CVE-2011-3055

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
opensuse affected opensuse
Upstream advisory

CVE-2011-3058

GoogleEPSS <= 49%CRITICAL2012-03-30

Google Chrome before 18.0.1025.142 does not properly handle the EUC-JP encoding system, which might allow remote attackers to conduct cross-site scripting (XSS) attacks via unspecified vectors.

CVEs:CVE-2011-3058

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
mac_os_x affected apple
Upstream advisory

CVE-2012-0316

Open SourceEPSS <= 49%HIGH2012-03-02

The Cookpad 1.5.16 and earlier and Cookpad Noseru 1.1.1 and earlier applications for Android do not properly implement the WebView class, which allows remote attackers to obtain sensitive information via a crafted application.

CVEs:CVE-2012-0316

Affected products

ProductStatusVendorPackageEcosystem
android_activities affected cookpad
android_mykitchen affected cookpad
Upstream advisory

CVE-2011-3056

GoogleEPSS <= 49%MEDIUM2012-03-21

Google Chrome before 17.0.963.83 allows remote attackers to bypass the Same Origin Policy via vectors involving a "magic iframe."

CVEs:CVE-2011-3056

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
iphone_os affected apple
opensuse affected opensuse
safari affected apple
Upstream advisory

CVE-2011-3063

GoogleEPSS <= 49%MEDIUM2012-03-30

Google Chrome before 18.0.1025.142 does not properly validate the renderer's navigation requests, which has unspecified impact and remote attack vectors.

CVEs:CVE-2011-3063

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2011-3061

GoogleEPSS <= 49%HIGH2012-03-30

Google Chrome before 18.0.1025.142 does not properly check X.509 certificates before use of a SPDY proxy, which might allow man-in-the-middle attackers to spoof servers or obtain sensitive information via a crafted certificate.

CVEs:CVE-2011-3061

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.