CVE-2011-2855

Google Chrome before 14.0.835.163 does not properly handle Cascading Style Sheets (CSS) token sequences, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale node."
Configurations

Configuration 1 (hide)

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2011-09-19 12:02

Updated : 2023-11-07 02:08


NVD link : CVE-2011-2855

Mitre link : CVE-2011-2855

CVE.ORG link : CVE-2011-2855


JSON object : View

Products Affected

apple

  • safari
  • iphone_os
  • itunes

google

  • chrome
CWE
CWE-74

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')