‫ Google Chrome Multiple Vulnerabilities

IRCAD2012031821
ID: IRCAD2012031821
Release Date: 2012-03-29
Criticality level: Highly critical
Software:
Google Chrome 17.x
Description:
Multiple vulnerabilities have been reported in Google Chrome, where some have an unknown impact and others can be exploited by malicious people to conduct cross-site scripting and spoofing attacks and compromise a user's system.
1) Some errors exist in the bundled version of Adobe Flash Player.
2) An error within certain interaction handling may allow cross-site scripting attacks in EUC-JP.
3) An error in SVG text handling can be exploited to cause an out-of-bounds read.
4) An error in text fragment handling can be exploited to cause an out-of-bounds read.
5) An error exists within SPDY proxy certificate checking.
6) An off-by-one error exists in OpenType sanitizer.
7) A validation error exists within the handling of certain navigation requests from the renderer.
8) A use-after-free error exists in SVG clipping.
9) An unspecified error in Skia can be exploited to corrupt memory.
10) An error exists in v8.
Solution
Upgrade to version 18.0.1025.142.
References:
Secunia:
 

نظرات

بدون نظر
شما برای نظر دادن باید وارد شوید

نوشته

 
تاریخ ایجاد: 10 فروردین 1391

امتیاز

امتیاز شما
تعداد امتیازها:0