Vulnerabilities > CVE-2008-7061 - Resource Management Errors vulnerability in Google Chrome 0.2.149.29

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
google
CWE-399
exploit available

Summary

The tooltip manager (chrome/views/tooltip_manager.cc) in Google Chrome 0.2.149.29 Build 1798 and possibly other versions before 0.2.149.30 allows remote attackers to cause a denial of service (CPU consumption or crash) via a tag with a long title attribute, which is not properly handled when displaying a tooltip, a different vulnerability than CVE-2008-6994. NOTE: there is inconsistent information about the environments under which this issue exists.

Vulnerable Configurations

Part Description Count
Application
Google
1

Common Weakness Enumeration (CWE)

Exploit-Db

descriptionGoogle Chrome 0.2.149 Malformed 'title' Tag Remote Denial of Service Vulnerability. CVE-2008-7061. Dos exploits for multiple platform
idEDB-ID:32311
last seen2016-02-03
modified2008-09-02
published2008-09-02
reporterExodus
sourcehttps://www.exploit-db.com/download/32311/
titleGoogle Chrome 0.2.149 - Malformed 'title' Tag Remote Denial of Service Vulnerability