CVE-2011-2841
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 3.7%
from disclosure to weapon17 days
Published on NVDSep 17
1st PoC+17d
exploitation probability
3.7%top 11% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Google Chrome before 14.0.835.163 does not properly perform garbage collection during the processing of PDF documents, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted document.
Affected products
n/a · n/apublic PoCs found — 2✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/17929cve_referencewww.exploit-db.com/exploits/17929/unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://code.google.com/p/chromium/issues/detail?id=78639http://googlechromereleases.blogspot.com/2011/09/stable-channel-update_16.htmlhttp://osvdb.org/75541http://securityreason.com/securityalert/8411https://exchange.xforce.ibmcloud.com/vulnerabilities/69868https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14019https://www.exploit-db.com/exploits/17929/