Skip to main content

Google Chrome Multiple Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 28 Jul 2010 4701 Views

RISK: Medium Risk

Multiple vulnerabilities have been identified in Google Chrome, which could be exploited by attackers to gain knowledge of sensitive information, cause a denial of service or compromise a vulnerable system.

1. An unspecified error in the layout code can be exploited to disclose memory content.

2. An unspecified error exists related to large canvases.

3. An unspecified error in the rendering code can be exploited to corrupt memory.

4. An unspecified error in the SVG handling can be exploited to corrupt memory.

5. An unspecified error exists related to hostname truncation and incorrect eliding.

NOTE: Two workarounds that prevent exploitation of a Windows kernel bug and a glibc bug have also been implemented.


Impact

  • Denial of Service
  • Remote Code Execution
  • Information Disclosure

System / Technologies affected

  • Google Chrome versions prior to 5.0.375.125

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

Upgrade to Google Chrome version 5.0.375.125:
http://www.google.com/chrome


Vulnerability Identifier

  • No CVE information is available

Source