Executive Summary
Summary | |
---|---|
Title | Google Chrome multiple vulnerabilities |
Informations | |||
---|---|---|---|
Name | VU#258423 | First vendor Publication | 2011-01-13 |
Vendor | VU-CERT | Last vendor Modification | 2011-01-13 |
Severity (Vendor) | N/A | Revision | M |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : | |||
---|---|---|---|
Cvss Base Score | N/A | Attack Range | N/A |
Cvss Impact Score | N/A | Attack Complexity | N/A |
Cvss Expoit Score | N/A | Authentication | N/A |
Calculate full CVSS 2.0 Vectors scores |
Detail
Vulnerability Note VU#258423Google Chrome multiple vulnerabilitiesOverviewGoogle Chrome contains multiple vulnerabilities that can allow a remote, unauthenticated attacker to execute arbitrary code on a vulnerable system.I. DescriptionGoogle Chrome stable channel versions prior to 8.0.552.237 contain multiple memory corruption vulnerabilities. These vulnerabilities include a stack corruption vulnerability in the PDF renderer component, two memory corruption vulnerabilities in the Vorbis decoder, and a video frame size error resulting in a bad memory access.The full list of security fixes can be found in the release notes. Update to version 8.0.552.237 or later. In most cases, this will happen automatically.
Referenceshttp://googlechromereleases.blogspot.com/2011/01/chrome-stable-release.html Bug 67208 was reported by Jared Allar of the CERT/CC and bugs 67303 and 68115 were reported by David Warren of the CERT/CC. See Google's release notes for full credits. This document was written by Jared Allar.
|
Original Source
Url : http://www.kb.cert.org/vuls/id/258423 |