Google Chrome Multiple Vulnerabilities
Last Update Date:
11 Jun 2014 14:34
Release Date:
11 Jun 2014
3676
Views
RISK: High Risk
TYPE: Clients - Browsers
Multiple vulnerabilities have been identified in Google Chrome, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, and compromise a user's system.
- The application bundles a vulnerable version of the Adobe Flash Player.
- A use-after-free error exists in filesystem api.
- An error within SPDY can be exploited to cause an out-of-bounds read access.
- An error within clipboard can be exploited to cause a buffer overflow.
- An error within media can be exploited to cause a heap-based buffer overflow.
Successful exploitation of vulnerabilities #2, #4, and #5 may allow execution of arbitrary code.
Impact
- Cross-Site Scripting
- Remote Code Execution
- Security Restriction Bypass
System / Technologies affected
- Versions prior to 35.0.1916.153.
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Update to version 35.0.1916.153.
Vulnerability Identifier
- CVE-2014-0531
- CVE-2014-0532
- CVE-2014-0533
- CVE-2014-0534
- CVE-2014-0535
- CVE-2014-0536
- CVE-2014-3154
- CVE-2014-3155
- CVE-2014-3156
- CVE-2014-3157
Source
Related Link
Share with