CVE-2011-3367
Published Nov 29, 2011Arora, possibly 0.11 and other versions, does not use a certain font when rendering certificate fields in a security dialog, which allows remote attackers to spoof the common name…
Vendor archive
2 CVEs tagged to vendor arora-browser — 0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.
Arora, possibly 0.11 and other versions, does not use a certain font when rendering certificate fields in a security dialog, which allows remote attackers to spoof the common name…
Integer overflow in Arora allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside the range of the unsigned short data t…