Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.804339
Kategorie:General
Titel:Google Chrome Multiple Vulnerabilities-02 Mar2014 (Windows)
Zusammenfassung:The host is installed with Google Chrome and is prone to multiple;vulnerabilities.
Beschreibung:Summary:
The host is installed with Google Chrome and is prone to multiple
vulnerabilities.

Vulnerability Insight:
Multiple flaws are due to:

- A use-after-free error within 'modules/speech/SpeechSynthesis.cpp' in blink.

- Insufficient cross-origin restriction within 'GenerateFunction' function in
blink.

- A use-after-free error within 'DatabaseThread::cleanupDatabaseThread'
function in web database in blink.

- A use-after-free error within 'WebSocketDispatcherHost::SendOrDrop' function
in web sockets implementation.

- More unspecified errors within v8.

Vulnerability Impact:
Successful exploitation will allow remote attackers to disclose potentially
sensitive information, conduct cross-site scripting attacks, conduct denial
of service, bypass certain security restrictions and possibly unspecified
other impacts.

Affected Software/OS:
Google Chrome version prior to 33.0.1750.149 on Windows.

Solution:
Upgrade to Google Chrome 33.0.1750.149 or later.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: BugTraq ID: 66120
Common Vulnerability Exposure (CVE) ID: CVE-2014-1700
Debian Security Information: DSA-2883 (Google Search)
http://www.debian.org/security/2014/dsa-2883
http://security.gentoo.org/glsa/glsa-201408-16.xml
http://www.securitytracker.com/id/1029914
SuSE Security Announcement: openSUSE-SU-2014:0501 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2014-04/msg00008.html
Common Vulnerability Exposure (CVE) ID: CVE-2014-1701
Common Vulnerability Exposure (CVE) ID: CVE-2014-1702
Common Vulnerability Exposure (CVE) ID: CVE-2014-1703
Common Vulnerability Exposure (CVE) ID: CVE-2014-1704
CopyrightCopyright (C) 2014 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.