You are here

V-038: Google Chrome Two Vulnerabilities

December 3, 2012 - 1:00am

Addthis

PROBLEM:

Google Chrome Two Vulnerabilities

PLATFORM:

The vulnerabilities are reported in versions prior to 23.0.1271.95.

ABSTRACT:

Two vulnerabilities have been reported in Google Chrome

REFERENCE LINKS:

Stable Channel Update
Secunia Advisory SA51447
CVE-2012-5137
CVE-2012-5138

IMPACT ASSESSMENT:

High

DISCUSSION:

Two vulnerabilities have been reported in Google Chrome, where one has an unknown impact and the other can be exploited by malicious people to compromise a user's system.

1) An error exists when handling file paths.

2) A use-after-free error exists when handling media sources.

The vulnerabilities are reported in versions prior to 23.0.1271.95.

IMPACT:

Unknown impact

SOLUTION:

Update to version 23.0.1271.95.

Addthis