Уязвимость use-after-free и DoS в Google Chrome через использование элементов SVG
Описание
Злоумышленники имеют возможность вызвать аварийное завершение работы (DoS атаку) или произвести другие неуточненные воздействия в браузере Google Chrome. Это может произойти из-за уязвимости типа use-after-free при работе с элементами SVG.
Затронутые версии ПО
- Google Chrome версии до 17.0.963.65
Тип уязвимости
- Use-after-free
- DoS атака
Ссылки
- Vendor Advisory
- Release NotesVendor Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Not Applicable
- Not Applicable
- Not Applicable
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party Advisory
- Vendor Advisory
- Release NotesVendor Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Одно из
EPSS
6.8 Medium
CVSS2
Дефекты
Связанные уязвимости
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG use elements.
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allow ...
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG use elements.
EPSS
6.8 Medium
CVSS2