[PCWorks] Google Chrome Multiple Vulnerabilities

  • From: "Clint Hamilton-PCWorks Admin" <PCWorks@xxxxxxxxxxxxxxxxxxxxxxxx>
  • To: "PCWorks@xxxxxxxxxxxxx" <pcworks@xxxxxxxxxxxxx>
  • Date: Mon, 28 Mar 2011 00:49:52 -0500

TITLE:
Google Chrome Multiple Vulnerabilities

Criticality level:   Highly critical
Impact:   System access
Where:   From remote

SECUNIA ADVISORY ID:
http://secunia.com/advisories/43859/

Software:  Google Chrome 10.x

DESCRIPTION:
Some vulnerabilities have been reported in Google Chrome, which 
can
be exploited by malicious people to compromise a user's system.

1) An unspecified buffer error exists in the handling of base
strings.

2) A use-after-free error exists within the frame loader.

3) A use-after-free error exists within HTMLCollection.

4) An error when handling CSS can lead to a stale pointer.

5) An error when handling broken node parentage can be 
exploited to
corrupt the DOM tree.

6) An error within the handling of SVG text can lead to a stale
pointer.

The vulnerabilities are reported in versions prior to 
10.0.648.204.

SOLUTION:
Update to version 10.0.648.204.

ORIGINAL ADVISORY:
http://googlechromereleases.blogspot.com/2011/03/stable-channel-update.html


=========================
The list's FAQ's can be seen by sending an email to 
PCWorks-request@xxxxxxxxxxxxx with FAQ in the subject line.

To unsubscribe, subscribe, set Digest or Vacation to on or off, go to 
//www.freelists.org/list/pcworks .  You can also send an email to 
PCWorks-request@xxxxxxxxxxxxx with Unsubscribe in the subject line.  Your 
member list settings can be found at 
//www.freelists.org/cgi-bin/lsg2.cgi/l=pcworks .  Once logged in, you have 
access to numerous other email options.  

The list archives are located at //www.freelists.org/archives/pcworks/ .  
All email posted to the list will be placed there in the event anyone needs to 
look for previous posts.
-zxdjhu-

Other related posts: