Release date:
Updated on:
Affected Systems:
Google Chrome 8.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 45390
Cve id: CVE-2010-3937
Google Chrome is a Web browser developed by Google.
Google Chrome versions earlier than 8.0.552.20.have multiple security vulnerabilities. Remote attackers can exploit these vulnerabilities to control user systems or cause DoS attacks.
Vulnerability Source:
1) A verification error occurs when messages are not serialized, resulting in memory corruption or crash. This vulnerability affects only 64-bit versions.
2) An error occurred while parsing CSS. Cross-border reading can be triggered;
3) an error occurs in Pointer processing and an outdated pointer can be referenced;
<* Source: Lei Zhang
Chris Rohlf
Sergey glaz.pdf
Slawomir Blazek
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Google
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.google.com