Google Chrome Multiple Vulnerabilities
Last Update Date:
17 Feb 2012 14:30
Release Date:
17 Feb 2012
5526
Views
RISK: High Risk
TYPE: Clients - Browsers
Multiple vulnerabilities have been identified in Google Chrome, where some have an unknown impact and others can be exploited by malicious people to compromise a user's system.
- An integer overflow error exists in PDF codecs.
- A use-after-free error exists within counter nodes.
- A use-after-free error exists within database handling.
- An error within path rendering can be exploited to cause a heap-based buffer overflow.
- An error within MKV handling can be exploited to cause a heap-based buffer overflow.
- An unspecified error exists within native client validator.
- A use-after-free error exists in subframe loading.
- An unspecified error exists when using HTTP for a translation script.
- A use-after-free error exists when performing drag and drop.
- An error when parsing H.264 content can be exploited to cause an out-of-bounds read.
- An integer overflow and integer truncation error exists in libpng.
- A type casting error exists in column handling.
Impact
- Remote Code Execution
System / Technologies affected
- Google Chrome 17.x
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Update to version 17.0.963.56.
Vulnerability Identifier
- CVE-2011-3015
- CVE-2011-3016
- CVE-2011-3017
- CVE-2011-3018
- CVE-2011-3019
- CVE-2011-3020
- CVE-2011-3021
- CVE-2011-3022
- CVE-2011-3023
- CVE-2011-3024
- CVE-2011-3025
- CVE-2011-3026
- CVE-2011-3027
Source
Related Link
Share with