CVE-2011-3079

Description

The Inter-process Communication (IPC) implementation in Google Chrome before 18.0.1025.168, as used in Mozilla Firefox before 38.0 and other products, does not properly validate messages, which has unspecified impact and attack vectors.

Risk Information

Base Score
8.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.804

Associated Vulnerability

VulnerabilityOS Platform
Update for SeaMonkey (2.35)Windows
Update for Mozilla Firefox ESR (38.1.0)Windows
Update for Mozilla Firefox ESR (38.1.1)Windows
Update for Mozilla Firefox ESR (38.2)Windows
Update for Mozilla Firefox ESR (38.2.1)Windows
Update for Mozilla Firefox ESR (38.3.0)Windows
Update for Mozilla Firefox ESR (38.4.0)Windows
Update for Mozilla Firefox ESR (38.5.0)Windows
Update for Mozilla Firefox ESR (38.5.1)Windows
Update for Mozilla Firefox ESR (38.5.2)Windows
Update for Mozilla Firefox ESR (38.6.0)Windows
Update for Mozilla Firefox ESR (38.6.1)Windows
Update for Mozilla Firefox ESR (38.7.0)Windows
Updates for Google Chrome (66.0.3359.170)Windows
Updates for Google Chrome (x64) (66.0.3359.170)Windows
Updates for Google Chrome (66.0.3359.181)Windows
Updates for Google Chrome (x64) (66.0.3359.181)Windows
Updates for Google Chrome (67.0.3396.62)Windows
Updates for Google Chrome (x64) (67.0.3396.62)Windows
Updates for Google Chrome (67.0.3396.79)Windows
Updates for Google Chrome (x64) (67.0.3396.79)Windows
Updates for Google Chrome (67.0.3396.87)Windows
Updates for Google Chrome (x64) (67.0.3396.87)Windows
Google Chrome (67.0.3396.99)Windows
Google Chrome (x64) (67.0.3396.99)Windows
Mozilla Firefox (65.0)Windows
Mozilla Thunderbird (60.5.0)Windows
Mozilla Firefox ESR (60.5.0)Windows
Mozilla Firefox (65.0.1)Windows
Mozilla Firefox ESR (60.5.1)Windows
Mozilla Thunderbird (60.5.1)Windows
Vulnerabilities CVE-2011-3078,CVE-2011-3079,CVE-2011-3080,CVE-2011-3081,CVE-2012-1521 are fixed in Chrome 18.0.1025.168Windows
Vulnerabilities CVE-2011-3078,CVE-2011-3079,CVE-2011-3080,CVE-2011-3081,CVE-2012-1521 are fixed in Chrome (x64) 18.0.1025.168Windows
iceweasel security update(DSA-3559-1) iceweasel_38.8.0esr-1~deb8u1_amd64.debLinux
Updates for Google Chrome (66.0.3359.170) (For Ubuntu)Linux
Updates for Google Chrome (66.0.3359.170) (For Debian)Linux
Updates for Google Chrome (66.0.3359.181) (For Debian)Linux
Updates for Google Chrome (67.0.3396.62) (For Debian)Linux
Updates for Google Chrome (67.0.3396.79) (For Debian)Linux
Updates for Google Chrome (67.0.3396.87) (For Debian)Linux
Google Chrome (67.0.3396.99) (For Debian)Linux
Vulnerabilities CVE-2011-3078,CVE-2011-3079,CVE-2011-3080,CVE-2011-3081,CVE-2012-1521 are fixed in Chrome 18.0.1025.168 (For Debian)Linux
Updates for Google Chrome (66.0.3359.170) (For Centos)Linux
Updates for Google Chrome (66.0.3359.181) (For Centos)Linux
Updates for Google Chrome (67.0.3396.62) (For Centos)Linux
Updates for Google Chrome (67.0.3396.79) (For Centos)Linux
Updates for Google Chrome (67.0.3396.87) (For Centos)Linux
Google Chrome (67.0.3396.99) (For Centos)Linux
Vulnerabilities CVE-2011-3078,CVE-2011-3079,CVE-2011-3080,CVE-2011-3081,CVE-2012-1521 are fixed in Chrome 18.0.1025.168 (For Centos)Linux
Updates for Google Chrome (66.0.3359.170) (For RedHat)Linux
Updates for Google Chrome (66.0.3359.181) (For RedHat)Linux
Updates for Google Chrome (67.0.3396.62) (For RedHat)Linux
Updates for Google Chrome (67.0.3396.79) (For RedHat)Linux
Updates for Google Chrome (67.0.3396.87) (For RedHat)Linux
Google Chrome (67.0.3396.99) (For RedHat)Linux
Vulnerabilities CVE-2011-3078,CVE-2011-3079,CVE-2011-3080,CVE-2011-3081,CVE-2012-1521 are fixed in Chrome 18.0.1025.168 (For RedHat)Linux
Updates for Google Chrome (66.0.3359.170) (For Suse)Linux
Updates for Google Chrome (66.0.3359.181) (For Suse)Linux
Updates for Google Chrome (67.0.3396.62) (For Suse)Linux
Updates for Google Chrome (67.0.3396.79) (For Suse)Linux
Updates for Google Chrome (67.0.3396.87) (For Suse)Linux
Google Chrome (67.0.3396.99) (For Suse)Linux
Vulnerabilities CVE-2011-3078,CVE-2011-3079,CVE-2011-3080,CVE-2011-3081,CVE-2012-1521 are fixed in Chrome 18.0.1025.168 (For Suse)Linux
Updates for Google Chrome (66.0.3359.181) (For Ubuntu)Linux
Updates for Google Chrome (67.0.3396.62) (For Ubuntu)Linux
Updates for Google Chrome (67.0.3396.79) (For Ubuntu)Linux
Updates for Google Chrome (67.0.3396.87) (For Ubuntu)Linux
Google Chrome (67.0.3396.99) (For Ubuntu)Linux
Vulnerabilities CVE-2011-3078,CVE-2011-3079,CVE-2011-3080,CVE-2011-3081,CVE-2012-1521 are fixed in Chrome 18.0.1025.168 (For Ubuntu)Linux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-301494Update for SeaMonkey (2.35)
PATCH-302079Update for Mozilla Firefox ESR (38.1.0)
PATCH-302171Update for Mozilla Firefox ESR (38.1.1)
PATCH-302283Update for Mozilla Firefox ESR (38.2)
PATCH-302284Update for Mozilla Firefox ESR (38.2.1)
PATCH-302285Update for Mozilla Firefox ESR (38.3.0)
PATCH-302286Update for Mozilla Firefox ESR (38.4.0)
PATCH-302287Update for Mozilla Firefox ESR (38.5.0)
PATCH-302288Update for Mozilla Firefox ESR (38.5.1)
PATCH-302289Update for Mozilla Firefox ESR (38.5.2)
PATCH-302290Update for Mozilla Firefox ESR (38.6.0)
PATCH-302291Update for Mozilla Firefox ESR (38.6.1)
PATCH-302292Update for Mozilla Firefox ESR (38.7.0)
PATCH-307513Updates for Google Chrome (66.0.3359.170)
PATCH-307515Updates for Google Chrome (x64) (66.0.3359.170)
PATCH-307534Updates for Google Chrome (66.0.3359.181)
PATCH-307535Updates for Google Chrome (x64) (66.0.3359.181)
PATCH-307607Updates for Google Chrome (67.0.3396.62)
PATCH-307608Updates for Google Chrome (x64) (67.0.3396.62)
PATCH-307641Updates for Google Chrome (67.0.3396.79)
PATCH-307644Updates for Google Chrome (x64) (67.0.3396.79)
PATCH-307660Updates for Google Chrome (67.0.3396.87)
PATCH-307662Updates for Google Chrome (x64) (67.0.3396.87)
PATCH-307715Google Chrome (67.0.3396.99)
PATCH-307716Google Chrome (x64) (67.0.3396.99)
PATCH-308874Mozilla Firefox (65.0)
PATCH-308875Mozilla Thunderbird (60.5.0)
PATCH-308876Mozilla Firefox ESR (60.5.0)
PATCH-308980Mozilla Firefox (65.0.1)
PATCH-308982Mozilla Firefox ESR (60.5.1)
PATCH-308999Mozilla Thunderbird (60.5.1)
PATCH-313038Google Chrome (80.0.3987.122)
PATCH-313039Google Chrome (x64) (80.0.3987.122)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234