Facebook Google Plus Twitter LinkedIn YouTube RSS Menu Search Resource - BlogResource - WebinarResource - ReportResource - Eventicons_066 icons_067icons_068icons_069icons_070

Google Chrome < 11.0.696.57 Multiple Vulnerabilities

High

Synopsis

The remote host contains a web browser that is affected by a code execution vulnerability.

Description



Versions of Google Chrome earlier than 11.0.696.57 are potentially affected by multiple vulnerabilities :

- A stale pointer exists in floating point handling. (61502)

- It may be possible to bypass the pop-up blocker via plug-ins. (70538)

- A linked-list race issue exists in database handling. Note that this issue only affects Chrome on Linux and Mac OS. (70589)

- There is a lack of thread safety in MIME handling. (71586)

- A bad extension with 'tabs' permission can capture local files. (72523)

- It is possible to crash the browser due to bad interaction with X. Note that this issue only affects Chrome on Linux. (72910)- Multiple integer overflows exist in float rendering. (73526)

- A same origin policy violation exists with blobs. (74653)

- A use-after-free error exists with ruby tags and CSS. (75186)

- A bad cast exists with floating select lists. (75347)

- Corrupt node trees exists with mutation events. (75801)

- Multiple stale pointers exist in layering code. (76001)

- A race condition exists in the sandbox launcher. (76542)

- An out-of-bounds read exists in SVG. (76646)

- It is possible to spoof the URL bar with navigation errors and interrupted loads. (76666, 77507, 78031)

- A stale pointer exists in drop-down list handling. (76966)

- A stale pointer exists in height calculations. (77130)

- A use-after-free error exists in WebSockets. (77346)

- Multiple dangling pointers exist in file dialogs. (77349)

- Multiple dangling pointers exist in DOM id map. (77463)

- It is possible to spoof the URL bar with redirect and manual reload. (77786)

- A use-after-free issue exists in DOM id handling. (79199)

- An out-of-bounds read exists when handling multipart-encoded PDFs. (79361)

- Multiple stale pointers exist with PDF forms. (79364)

Solution

Upgrade to Google Chrome 11.0.696.57 or later.