Уязвимость use-after-free и DoS в Google Chrome, связанная с SVG-клиппингом
Описание
В браузере Google Chrome обнаружена уязвимость типа use-after-free, связанная с SVG-клиппингом. Эта уязвимость позволяет удалённым злоумышленникам вызвать DoS атаку или, возможно, осуществить другие неопределённые действия.
Затронутые версии ПО
- Google Chrome версии до 18.0.1025.142
Тип уязвимости
- DoS атака
- Неопределённые последствия
Ссылки
- Vendor Advisory
- Vendor Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Broken Link
- Not Applicable
- Not Applicable
- Not Applicable
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party AdvisoryVDB Entry
- Third Party Advisory
- Vendor Advisory
- Vendor Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Одно из
EPSS
7.5 High
CVSS2
Дефекты
Связанные уязвимости
Use-after-free vulnerability in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to SVG clipping.
Use-after-free vulnerability in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to SVG clipping.
Use-after-free vulnerability in Google Chrome before 18.0.1025.142 all ...
Use-after-free vulnerability in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to SVG clipping.
EPSS
7.5 High
CVSS2