Google Chrome < 80.0.3987.87 Multiple Vulnerabilities

high Nessus Plugin ID 133464

Synopsis

A web browser installed on the remote macOS host is affected by multiple vulnerabilities.

Description

The version of Google Chrome installed on the remote macOS host is prior to 80.0.3987.87. It is, therefore, affected by multiple vulnerabilities as referenced in the 2020_02_stable-channel-update-for-desktop advisory.

- Insufficient data validation in streams in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (CVE-2020-6416)

- Integer overflow in JavaScript in Google Chrome on ChromeOS and Android prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (CVE-2020-6381)

- Type confusion in JavaScript in Google Chrome prior to 80.0.3987.87 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (CVE-2020-6382)

- In xsltCopyText in transform.c in libxslt 1.1.33, a pointer variable isn't reset under certain circumstances. If the relevant memory area happened to be freed and reused in a certain way, a bounds check could fail and memory outside a buffer could be written to, or uninitialized data could be disclosed. (CVE-2019-18197)

- multiSelect in select.c in SQLite 3.30.1 mishandles certain errors during parsing, as demonstrated by errors from sqlite3WindowRewrite() calls. NOTE: this vulnerability exists because of an incomplete fix for CVE-2019-19880. (CVE-2019-19926)

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Upgrade to Google Chrome version 80.0.3987.87 or later.

See Also

http://www.nessus.org/u?fc6a32b5

https://crbug.com/1034394

https://crbug.com/1031909

https://crbug.com/1020745

https://crbug.com/1042700

https://crbug.com/1035399

https://crbug.com/1042535

https://crbug.com/1042879

https://crbug.com/1042933

https://crbug.com/1045874

https://crbug.com/1017871

https://crbug.com/1030411

https://crbug.com/1035058

https://crbug.com/1014371

https://crbug.com/1022855

https://crbug.com/1026546

https://crbug.com/1037889

https://crbug.com/881675

https://crbug.com/929711

https://crbug.com/968505

https://crbug.com/1005713

https://crbug.com/1048330

https://crbug.com/1035271

https://crbug.com/1027408

https://crbug.com/1032090

https://crbug.com/1039869

https://crbug.com/1038036

https://crbug.com/1017707

https://crbug.com/1029375

https://crbug.com/1006012

https://crbug.com/1024256

https://crbug.com/1042145

https://crbug.com/1042254

https://crbug.com/1042578

https://crbug.com/1021855

https://crbug.com/1029576

https://crbug.com/1031895

https://crbug.com/1033824

Plugin Details

Severity: High

ID: 133464

File Name: macosx_google_chrome_80_0_3987_87.nasl

Version: 1.9

Type: local

Agent: macosx

Published: 2/4/2020

Updated: 11/24/2025

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: Medium

Base Score: 6.8

Temporal Score: 5.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:P

CVSS Score Source: CVE-2020-6416

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 7.9

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:google:chrome

Required KB Items: installed_sw/Google Chrome

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2/4/2020

Vulnerability Publication Date: 10/18/2019

Reference Information

CVE: CVE-2019-18197, CVE-2019-19923, CVE-2019-19926, CVE-2020-6381, CVE-2020-6382, CVE-2020-6385, CVE-2020-6387, CVE-2020-6388, CVE-2020-6389, CVE-2020-6390, CVE-2020-6391, CVE-2020-6392, CVE-2020-6393, CVE-2020-6394, CVE-2020-6395, CVE-2020-6396, CVE-2020-6397, CVE-2020-6398, CVE-2020-6399, CVE-2020-6400, CVE-2020-6401, CVE-2020-6402, CVE-2020-6403, CVE-2020-6404, CVE-2020-6405, CVE-2020-6406, CVE-2020-6408, CVE-2020-6409, CVE-2020-6410, CVE-2020-6411, CVE-2020-6412, CVE-2020-6413, CVE-2020-6414, CVE-2020-6415, CVE-2020-6416, CVE-2020-6417