Vulnerabilities > CVE-2010-3117 - Unspecified vulnerability in Google Chrome
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN google
nessus
Summary
Google Chrome before 5.0.375.127 does not properly implement the notifications feature, which allows remote attackers to cause a denial of service (application crash) and possibly have unspecified other impact via unknown vectors.
Vulnerable Configurations
Nessus
NASL family | Windows |
NASL id | GOOGLE_CHROME_5_0_375_127.NASL |
description | The version of Google Chrome installed on the remote host is earlier than 5.0.375.127. Such versions are reportedly affected by multiple vulnerabilities : - A memory corruption vulnerability exists with the file dialog. (Issue #45400) - A memory corruption vulnerability exists when processing SVG files. (Issue #49596) - A vulnerability exists due to a bad cast with text editing. (Issue #49628) - A vulnerability exists that possibly allows address bar spoofing via a history bug. (Issue #49964) - A memory corruption vulnerability exists in MIME type handling. (Issue #50515, #51835) - A vulnerability exists due to a crash on shutdown via a notifications bug. (Issue #50553) - A vulnerability can be triggered in omnibox autosuggest if the user may be going to type a password. (Issue #51146) - A memory corruption vulnerability exists in ruby support. (Issue #51654) - A memory corruption vulnerability exists in Geolocation support. (Issue #51670) |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 48383 |
published | 2010-08-20 |
reporter | This script is Copyright (C) 2010-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/48383 |
title | Google Chrome < 5.0.375.127 Multiple Vulnerabilities |
code |
|
Oval
accepted | 2013-08-12T04:00:58.864-04:00 | ||||||||||||||||||||||||
class | vulnerability | ||||||||||||||||||||||||
contributors |
| ||||||||||||||||||||||||
definition_extensions |
| ||||||||||||||||||||||||
description | Google Chrome before 5.0.375.127 does not properly implement the notifications feature, which allows remote attackers to cause a denial of service (application crash) and possibly have unspecified other impact via unknown vectors. | ||||||||||||||||||||||||
family | windows | ||||||||||||||||||||||||
id | oval:org.mitre.oval:def:12098 | ||||||||||||||||||||||||
status | accepted | ||||||||||||||||||||||||
submitted | 2010-08-25T11:10:59 | ||||||||||||||||||||||||
title | Vulnerability in notifications feature in Google Chrome before 5.0.375.127 | ||||||||||||||||||||||||
version | 50 |
References
- http://code.google.com/p/chromium/issues/detail?id=50553
- http://code.google.com/p/chromium/issues/detail?id=50553
- http://googlechromereleases.blogspot.com/2010/08/stable-channel-update_19.html
- http://googlechromereleases.blogspot.com/2010/08/stable-channel-update_19.html
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12098
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12098