UBUNTU-CVE-2011-3887

Source
https://ubuntu.com/security/CVE-2011-3887
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2011/UBUNTU-CVE-2011-3887.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2011-3887
Upstream
  • CVE-2011-3887
Published
2011-10-25T19:55:00Z
Modified
2026-04-22T09:09:47.756497Z
Severity
  • Ubuntu - medium
Summary
[none]
Details

Google Chrome before 15.0.874.102 does not properly handle javascript: URLs, which allows remote attackers to bypass intended access restrictions and read cookies via unspecified vectors.

References

Affected packages

Ubuntu:16.04:LTS / qtwebkit-source

Package

Name
qtwebkit-source
Purl
pkg:deb/ubuntu/qtwebkit-source@2.3.2-0ubuntu11?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

2.*
2.3.2-0ubuntu10
2.3.2-0ubuntu11

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "2.3.2-0ubuntu11",
            "binary_name": "libqtwebkit-qmlwebkitplugin"
        },
        {
            "binary_version": "2.3.2-0ubuntu11",
            "binary_name": "libqtwebkit4"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2011/UBUNTU-CVE-2011-3887.json"