CVE-2011-1449 is a use-after-free vulnerability in the WebSockets implementation of Google Chrome before version 11.0.696.57, also affecting Apple products like Safari and iTunes that incorporate Chrome's rendering engine. This vulnerability has a CVSS score of 6.8, indicating a medium severity, and could allow remote attackers to cause a denial of service or potentially have other unspecified impacts. Exploitation requires medium attack complexity and could lead to partial confidentiality, integrity, and availability compromise. There is no evidence of active exploitation, no known public exploit code (Metasploit, Nuclei, ExploitDB), and it has received minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 11.0.696.57CPE matchmatch criteria | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* | ||
< 10.5CPE matchmatch criteria | cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:* | ||
< 5.0.6CPE matchmatch criteria | cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* | ||
< 5.0CPE matchmatch criteria | cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.