Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Google Chrome Multiple Security Vulnerabilities Mar18 (Windows)

Information

Severity

Severity

Critical

Family

Family

General

CVSSv2 Base

CVSSv2 Base

10.0

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

6 years ago

Modified

Modified

4 years ago

Summary

This host is installed with Google Chrome and is prone to multiple vulnerabilities.

Insight

Insight

Multiple flaws are due to: - Multiple use after free errors in flash and Blink. - Race condition, type confusion and integer overflow errors in V8. - Buffer overflows errors in Skia, PDFium and WebGL. - Multiple incorrect permission errors on shared memory. - Same origin bypass error via canvas. - CSP bypass error through extensions. - Object lifecycle issues in Chrome custom. - Mark-of-the-Web bypass error. - Overly permissive cross origin download errors. - Timing attack error using SVG filters. - URL Spoof error in OmniBox. - Information disclosure error in IPC call. - XSS due to input validation error in interstitials. - Circumvention of port blocking error. - Incorrect processing error of AppManifests.

Affected Software

Affected Software

Google Chrome versions prior to 65.0.3325.146 on Windows.

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

Upgrade to Google Chrome version 65.0.3325.146 or later.