Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Google Chrome multiple vulnerabilities - June 10

Information

Severity

Severity

Critical

Family

Family

General

CVSSv2 Base

CVSSv2 Base

10.0

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

13 years ago

Modified

Modified

5 years ago

Summary

The host is running Google Chrome and is prone to multiple vulnerabilities.

Insight

Insight

Multiple flaws are due to: - An error in canonicalization of URLs, which does not properly follow the safe browsing 'specification&qts' requirements for canonicalization of 'URLs'. - A memory error when processing vectors related to the Safe Browsing functionality. - Unspecified errors when processing vectors involving 'unload' event handlers, which allow remote attackers to spoof the URL bar. - Unspecified errors when processing unknown vectors, which allows remote attackers to bypass the 'whitelist-mode' plugin blocker. - Unspecified errors when handling the vectors related to the 'drag + drop' functionality allows remote attackers to cause a denial of service. - It does not properly execute 'JavaScript' code in the extension context, which has unspecified impact and remote attack vectors.

Affected Software

Affected Software

Google Chrome version prior to 5.0.375.55

Solution

Solution

Upgrade to the Google Chrome 5.0.375.55 or later.