Lucene search

K
kasperskyKaspersky LabKLA10463
HistoryMar 03, 2015 - 12:00 a.m.

KLA10463 Multiple vulnerabilities in Google Chrome

2015-03-0300:00:00
Kaspersky Lab
threats.kaspersky.com
53

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.4

Confidence

Low

EPSS

0.044

Percentile

92.5%

Multiple critical vulnerabilities have been found in Google Chrome. Malicious users can exploit these vulnerabilities to cause denial of service, bypass security restrictions or inject arbitrary code.

Below is a complete list of vulnerabilities

  1. Name conflict can be exploited remotely via a specially designed JavaScript;
  2. An use-after-free vulnerability can be exploited remotely via incorrect operating with Web SQL Database, a specially designed GIF image, moving SCIPT element to different documents, vectors related to caching notifiers, vectors related to read-only fields or invalid input, vectors related to frame detachment;
  3. Lack of parameters check can be exploited remotely via a specially designed VPx video;
  4. Unknown vulnerability can be exploited remotely via vectors related to PDFium and Skia;
  5. Improper URL restrictions can be exploited remotely via a specially designed extension;
  6. Problems with memory initialization can be exploited remotely via a specially designed image;
  7. Integer overflow can be exploited remotely via vectors related to memory allocation;
  8. Integer overflow and out-of-bounds write operation can be exploited remotely via vectors related to Skia;
  9. Improper compile listners can be exploited remotely via vectors related to Blink;
  10. Lack of realyout operation enforcement and memory initialization can be exploited remotely via specially designed CSS;
  11. Improper handling of 407 status can be exploited remotely via specially designed response.

Original advisories

Google blog entry

Related products

Google-Chrome

CVE list

CVE-2015-1223 critical

CVE-2015-1222 critical

CVE-2015-1218 critical

CVE-2015-1230 critical

CVE-2015-1227 critical

CVE-2015-1226 critical

CVE-2015-1225 critical

CVE-2015-1224 critical

CVE-2015-1221 critical

CVE-2015-1213 critical

CVE-2015-1212 critical

CVE-2015-1228 critical

CVE-2015-1229 critical

CVE-2015-1214 critical

CVE-2015-1220 high

CVE-2015-1219 critical

CVE-2015-1217 critical

CVE-2015-1215 critical

CVE-2015-1216 critical

Solution

Update to the latest version. File with name old_chrome can be still detected after update. It caused by Google Chrome update policy which does not remove old versions when installing updates. Try to contact vendor for further delete instructions or ignore such kind of alerts at your own risk.

Impacts

  • DoS

Denial of service. Exploitation of vulnerabilities with this impact can lead to loss of system availability or critical functional fault.

  • CI

Code injection. Exploitation of vulnerabilities with this impact can lead to changes in target code.

  • SB

Security bypass. Exploitation of vulnerabilities with this impact can lead to performing actions restricted by current security settings.

Affected Products

  • Google Chrome versions earlier than 41.0.2272.76

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

8.4

Confidence

Low

EPSS

0.044

Percentile

92.5%