Уязвимость use-after-free и DoS в Google Chrome через некорректную обработку SVG-документа
Описание
Уязвимость типа use-after-free обнаружена в Google Chrome. Она позволяет злоумышленникам вызвать DoS атаку или, возможно, произвести неуказанные другие воздействия, используя вектор с вовлечением SVG-документа.
Затронутые версии ПО
- Google Chrome версии до 17.0.963.65
Тип уязвимости
- DoS атака
- Неуказанные другие воздействия
Ссылки
- Vendor Advisory
- Release NotesVendor Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Not Applicable
- Not Applicable
- Not Applicable
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party Advisory
- Vendor Advisory
- Release NotesVendor Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Одно из
EPSS
6.8 Medium
CVSS2
Дефекты
Связанные уязвимости
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving an SVG document.
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allow ...
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving an SVG document.
EPSS
6.8 Medium
CVSS2