Google Chrome < 13.0.782.218 Out of Date CA List

high Nessus Plugin ID 56023

Synopsis

The remote host contains a web browser that is affected by an out of date certificate authority list.

Description

The version of Google Chrome installed on the remote host is earlier than 13.0.782.218 and is potentially affected by an out of date certificate authority list. Due to the issuance of several fraudulent SSL certificates, the certificate authority DigiNotar has been disabled in Google Chrome.

Solution

Upgrade to Google Chrome 13.0.782.218 or later.

See Also

http://www.nessus.org/u?cc6d9ef3

http://www.nessus.org/u?f3fc8e9a

http://www.nessus.org/u?64a59ee1

Plugin Details

Severity: High

ID: 56023

File Name: google_chrome_13_0_782_218.nasl

Version: 1.6

Type: Local

Agent: windows

Family: Windows

Published: 8/31/2011

Updated: 5/19/2026

Configuration: Enable thorough checks (optional)

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Nessus

Risk Information

CVSS Score Rationale: The cvss score was manually assigned based on the security impact of the out-of-date ca list.

CVSS v2

Risk Factor: Medium

Base Score: 5.8

Vector: CVSS2#AV:N/AC:M/Au:N/C:P/I:P/A:N

CVSS Score Source: manual

CVSS v3

Risk Factor: High

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Vulnerability Information

CPE: cpe:/a:google:chrome

Required KB Items: SMB/Google_Chrome/Installed

Patch Publication Date: 8/30/2011

Vulnerability Publication Date: 8/29/2011