Skip to main content

Google Chrome and Chrome OS Multiple Memory Corruption Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 14 Jan 2011 5167 Views

RISK: Medium Risk

Multiple vulnerabilities have been identified in Google Chrome and Chrome OS, which could be exploited by remote attackers to cause a denial of service or execute arbitrary code. These issues are caused by input validation errors, invalid and dangling pointers, and memory corruptions related to extensions notification handling, node iteration, multi-page PDFs printing, CSS and canvas or cursors, PDF page handling, video frame sizes, SVG, rogue extensions, Vorbis decoder, PDF shading, anchor and video handling, DOM node removal, and speech handling, which could be exploited by attackers to crash an affected browser or compromise a vulnerable system by convincing a user to visit a specially crafted web page.


Impact

  • Denial of Service
  • Remote Code Execution

System / Technologies affected

  • Google Chrome versions prior to 8.0.552.237
  • Google Chrome OS versions prior to 8.0.552.334

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Google Chrome - Upgrade to version 8.0.552.237
  • Google Chrome OS - Upgrade to version 8.0.552.334


Vulnerability Identifier

  • No CVE information is available

Source


Related Link