HTTP: Google Chrome and Apple Safari Run-in Handling Use After Free

This signature detects attempts to exploit a known vulnerability against Apple Safari and Google Chrome. A successful attack can lead to arbitrary code execution.

Extended Description

Google Chrome is prone to multiple vulnerabilities. Attackers can exploit these issues to execute arbitrary code in the context of the browser, bypass security restrictions, and perform cross-origin attacks; other attacks may also be possible. Versions prior to Chrome 18.0.1025.151 are vulnerable.

Affected Products

Google chrome

References

BugTraq: 52913

CVE: CVE-2011-3068

Short Name
HTTP:STC:SAFARI:RUNIN-UAF
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
After Apple CVE-2011-3068 Chrome Free Google Handling Run-in Safari Use and bid:52913
Release Date
05/01/2012
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Google

Apple

Gentoo

Ubuntu

CVSS Score

6.8

Found a potential security threat?