Уязвимость use-after-free и DoS в Google Chrome через векторы, связанные с элементами анимации SVG
Описание
В браузере Google Chrome выявлена уязвимость типа use-after-free, которая позволяет злоумышленникам вызвать DoS атаку или привести к другим неопределённым последствиям. Данная проблема связана с обработкой элементов анимации SVG.
Затронутые версии ПО
- Google Chrome < 17.0.963.65
Тип уязвимости
- Use-after-free
- DoS атака
Ссылки
- Vendor Advisory
- Release NotesVendor Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Not Applicable
- Not Applicable
- Not Applicable
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party Advisory
- Vendor Advisory
- Release NotesVendor Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Одно из
EPSS
6.8 Medium
CVSS2
Дефекты
Связанные уязвимости
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG animation elements.
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allow ...
Use-after-free vulnerability in Google Chrome before 17.0.963.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG animation elements.
EPSS
6.8 Medium
CVSS2