This script is Copyright (C) 2009-2017 Tenable Network Security, Inc.
The remote host contains a web browser that is affected by multiple
The version of Google Chrome installed on the remote host is earlier
than 188.8.131.52. Such versions are reportedly affected by multiple
unauthorized data in memory or to execute arbitrary code
within the Google Chrome sandbox. (CVE-2009-2935)
- The browser can connect to SSL-enabled sites whose
certificates use weak hash algorithms, such as MD2 and
MD4. An attacker may be able exploit this issue to
forge certificates and spoof an invalid website as a
valid HTTPS site. (Issue #18725)
- A stack consumption vulnerability in libxml2 library
could be exploited to crash the Google Chrome tab process
or execute arbitrary code with in Google Chrome sandbox.
- Multiple use-after-free vulnerabilities in libxml2
library could be exploited to crash the Google Chrome
tab process or execute arbitrary code with in Google
Chrome sandbox. (CVE-2009-2416)
See also :
Upgrade to Google Chrome 184.108.40.206 or later.
Risk factor :
High / CVSS Base Score : 9.3
CVSS Temporal Score : 8.1
Public Exploit Available : false