Google Chrome < 11.0.696.57 Multiple Vulnerabilities

high Nessus Network Monitor Plugin ID 5899

Synopsis

The remote host contains a web browser that is affected by a code execution vulnerability.

Description

Versions of Google Chrome earlier than 11.0.696.57 are potentially affected by multiple vulnerabilities :

- A stale pointer exists in floating point handling. (61502)

- It may be possible to bypass the pop-up blocker via plug-ins. (70538)

- A linked-list race issue exists in database handling. Note that this issue only affects Chrome on Linux and Mac OS. (70589)

- There is a lack of thread safety in MIME handling. (71586)

- A bad extension with 'tabs' permission can capture local files. (72523)

- It is possible to crash the browser due to bad interaction with X. Note that this issue only affects Chrome on Linux. (72910)- Multiple integer overflows exist in float rendering. (73526)

- A same origin policy violation exists with blobs. (74653)

- A use-after-free error exists with ruby tags and CSS. (75186)

- A bad cast exists with floating select lists. (75347)

- Corrupt node trees exists with mutation events. (75801)

- Multiple stale pointers exist in layering code. (76001)

- A race condition exists in the sandbox launcher. (76542)

- An out-of-bounds read exists in SVG. (76646)

- It is possible to spoof the URL bar with navigation errors and interrupted loads. (76666, 77507, 78031)

- A stale pointer exists in drop-down list handling. (76966)

- A stale pointer exists in height calculations. (77130)

- A use-after-free error exists in WebSockets. (77346)

- Multiple dangling pointers exist in file dialogs. (77349)

- Multiple dangling pointers exist in DOM id map. (77463)

- It is possible to spoof the URL bar with redirect and manual reload. (77786)

- A use-after-free issue exists in DOM id handling. (79199)

- An out-of-bounds read exists when handling multipart-encoded PDFs. (79361)

- Multiple stale pointers exist with PDF forms. (79364)

Solution

Upgrade to Google Chrome 11.0.696.57 or later.

See Also

http://googlechromereleases.blogspot.com/2011/04/chrome-stable-update.html

Plugin Details

Severity: High

ID: 5899

Family: Web Clients

Published: 4/14/2011

Updated: 3/6/2019

Nessus ID: 53569

Risk Information

VPR

Risk Factor: Medium

Score: 5.8

CVSS v2

Risk Factor: High

Base Score: 9.3

Temporal Score: 6.9

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/a:google:chrome

Patch Publication Date: 4/14/2011

Vulnerability Publication Date: 4/14/2011

Reference Information

CVE: CVE-2011-1303

BID: 47604