CVE-2011-3093 describes an out-of-bounds read vulnerability in Google Chrome versions prior to 19.0.1084.46, stemming from improper handling of glyphs. This flaw allows remote attackers to cause a denial of service. With a CVSS score of 5.0, it is a low-severity vulnerability that requires no authentication and has low attack complexity, but only impacts availability. There is no evidence of active exploitation, and no public exploit code is available in Metasploit, Nuclei, or ExploitDB, though it has received some community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 19.0.1084.45CPE matchmatch criteria | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.