Google Chrome < 33.0.1750.149 Multiple Vulnerabilities
High Nessus Network Monitor Plugin ID 8158
SynopsisThe remote host is running an outdated web browser that contains multiple vulnerabilities.
DescriptionThe Google Chrome browser detected on the remote system is older than version 33.0.1750.149, and is therefore vulnerable to the following issues:
- Use-after-free in 'speech' and 'web database', which may be leveraged by an attacker for remote code execution (CVE-2014-1700, CVE-2014-1702)
- Universal cross-site-scripting attack due to insufficient user input validation in 'events' handling. (CVE-2014-1701)
- Use-after-free error in 'web sockets' that can allow sandbox protection bypass (CVE-2014-1703)
- An update to the latest version of Flash player, 22.214.171.124.
SolutionUpgrade to Google Chrome 33.0.1750.149 or later.