Google Chrome Multiple Vulnerabilities
Last Update Date:
25 May 2012 10:28
Release Date:
25 May 2012
5047
Views
RISK: High Risk
TYPE: Clients - Browsers
Multiple vulnerabilities have been identified in Google Chrome, where some have unknown impacts and others can be exploited by malicious people to compromise a user's system.
- An unspecified error exists in the v8 garbage collection, which may result in a crash.
- An out-of-bounds read error exists in Skia.
- A use-after-free error exists in first-letter handling.
- An error with websockets over SSL can be exploited to corrupt memory.
- An unspecified error exists in the plug-in JavaScript bindings, which may result in a crash.
- A use-after-free error exists in the browser cache.
- A bad cast error exists in the GTK UI.
- Some errors in the PDF handling can be exploited to cause out-of-bounds writes.
- An invalid read error exists in v8.
- A use-after-free error exists with encrypted PDF.
- An invalid cast error exists with colorspace handling in PDF.
- An error with PDF functions can be exploited to cause a buffer overflow.
- A type corruption error exists in v8.
Impact
- Remote Code Execution
System / Technologies affected
- Google Chrome 19.x
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Update to version 19.0.1084.52.
Vulnerability Identifier
- CVE-2011-3103
- CVE-2011-3104
- CVE-2011-3105
- CVE-2011-3106
- CVE-2011-3107
- CVE-2011-3108
- CVE-2011-3109
- CVE-2011-3110
- CVE-2011-3111
- CVE-2011-3112
- CVE-2011-3113
- CVE-2011-3114
- CVE-2011-3115
Source
Related Link
Share with