Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Google Chrome Security Updates(stable-channel-update-for-desktop-2018-04)-Linux

Information

Severity

Severity

Medium

Family

Family

General

CVSSv2 Base

CVSSv2 Base

6.8

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:P/I:P/A:P

Solution Type

Solution Type

Vendor Patch

Created

Created

6 years ago

Modified

Modified

4 years ago

Summary

The host is installed with Google Chrome and is prone to multiple vulnerabilities.

Insight

Insight

Multiple flaws exists due to, - Multiple use after free errors in 'Disk Cache', 'WebAssembly' and 'PDFium'. - A same origin policy bypass error in Service Worker. - A heap buffer overflow error in Skia. - An incorrect handling of plug-ins by Service Worker. - An integer overflow error in WebAssembly. - Multiple UI spoofing errors. - Multiple URL spoofing errors in Omnibox. - An insufficient protection of remote debugging prototol in DevTools. - An incorrect handling of promises in V8, files by FileAPI, plaintext files via file://. - An incorrect low memory handling in WebAssembly. - A content security policy bypass error.

Affected Software

Affected Software

Google Chrome version prior to 66.0.3359.117 on Linux.

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

Upgrade to Google Chrome version 66.0.3359.117 or later. Please see the references for more information.