The Autofill feature in Google Chrome before 19.0.1084.46 does not properly restrict field values, which allows remote attackers to cause a denial of service (UI corruption) and possibly conduct spoofing attacks via vectors involving long values.
References
Configurations
Information
Published : 2012-05-15 17:55
Updated : 2017-12-28 18:29
NVD link : CVE-2011-3085
Mitre link : CVE-2011-3085
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
- chrome