Google Chrome < 7.0.517.44 Multiple Vulnerabilities

High Nessus Plugin ID 50476


The remote host contains a web browser that is affected by multiple vulnerabilities.


The version of Google Chrome installed on the remote host is earlier than 7.0.517.44. Such versions are reportedly affected by multiple vulnerabilities :

- A use-after-free error exists in text editing.
(Issue #51602)

- A memory corruption error exists relating to enormous text area. (Issue #55257)

- A bad cast exists with the SVG use element.
(Issue #58657)

- An invalid memory read exists in XPath handling.
(Issue #58731)

- A use-after-free error exists in text control selections. (Issue #58741)

- A memory corruption issue exists in libvpx.
(Issue #60055)

- A bad use of a destroyed frame object exists.
(Issue #60238)

- Multiple type confusions exists with event objects.
(Issue #60327, #60769, #61255)

- An out-of-bounds array access exists in SVG handling.
(Issue #60688)


Upgrade to Google Chrome 7.0.517.44 or later.

See Also

Plugin Details

Severity: High

ID: 50476

File Name: google_chrome_7_0_517_44.nasl

Version: $Revision: 1.19 $

Type: local

Agent: windows

Family: Windows

Published: 2010/11/04

Modified: 2016/05/16

Dependencies: 34196

Risk Information

Risk Factor: High


Base Score: 9.3

Temporal Score: 7.7

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:F/RL:OF/RC:ND

Vulnerability Information

CPE: cpe:/a:google:chrome

Required KB Items: SMB/Google_Chrome/Installed

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 2010/11/04

Vulnerability Publication Date: 2010/11/04

Reference Information

CVE: CVE-2010-4008, CVE-2010-4197, CVE-2010-4198, CVE-2010-4203, CVE-2010-4204, CVE-2010-4206

BID: 44646, 44771, 44779, 45718, 45719, 45720, 45721

OSVDB: 69163, 69164, 69169, 69170, 69172, 69205

Secunia: 42109