CVE-2011-3109 is a denial-of-service vulnerability affecting Google Chrome on Linux systems prior to version 19.0.1084.52. It stems from an improper variable cast within Chrome's GTK UI implementation, allowing remote attackers to trigger a DoS and potentially other unknown impacts. With a CVSS score of 7.5, this vulnerability is considered highly severe due to its network-based attack vector, low attack complexity, and potential for partial confidentiality, integrity, and availability compromise. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or inclusion in the KEV catalog, though it has received minimal community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 19.0.1084.51CPE matchmatch criteria | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* | ||
19.0.1028.0CPE matchmatch criteria | cpe:2.3:a:google:chrome:19.0.1028.0:*:*:*:*:*:*:* | ||
19.0.1029.0CPE matchmatch criteria | cpe:2.3:a:google:chrome:19.0.1029.0:*:*:*:*:*:*:* | ||
19.0.1030.0CPE matchmatch criteria | cpe:2.3:a:google:chrome:19.0.1030.0:*:*:*:*:*:*:* | ||
19.0.1031.0CPE matchmatch criteria | cpe:2.3:a:google:chrome:19.0.1031.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.