Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.813884
Category:General
Title:Google Chrome Security Updates (stable-channel-update-for-desktop-2018-09) - Windows
Summary:Google Chrome is prone to multiple vulnerabilities.
Description:Summary:
Google Chrome is prone to multiple vulnerabilities.

Vulnerability Insight:
Multiple flaws are due to:

- Multiple out of bounds write errors in V8 and Mojo.

- A missing check for JS-simulated input events in Blink.

- A missing origin check related to HLS manifests in Blink.

- Multiple out of bounds read errors in Blink, WebAudio, SwiftShader, Little-CMS,
PDFium and WebRTC.

- An integer overflow error in Skia.

- Multiple use after free errors in WebRTC and Memory Instrumentation.

- An user confirmation bypass error in external protocol handling.

- A stack buffer overflow error in SwiftShader.

- An improper file access control in DevTools and Blink.

- Multiple url spoofing errors.

- The content security policy bypass error in Blink.

- A security bypass error in Autofill.

- An insufficient policy enforcement in extensions API in Google Chrome.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to bypass security restrictions, cause denial of service condition,
disclose sensitive information and conduct spoofing attack.

Affected Software/OS:
Google Chrome version prior to 69.0.3497.81
on Windows

Solution:
Upgrade to Google Chrome version 69.0.3497.81
or later. Please see the references for more information.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2018-16066
BugTraq ID: 105215
http://www.securityfocus.com/bid/105215
Debian Security Information: DSA-4289 (Google Search)
https://www.debian.org/security/2018/dsa-4289
https://security.gentoo.org/glsa/201811-10
https://crbug.com/847570
RedHat Security Advisories: RHSA-2018:2666
https://access.redhat.com/errata/RHSA-2018:2666
Common Vulnerability Exposure (CVE) ID: CVE-2018-16067
https://crbug.com/860522
Common Vulnerability Exposure (CVE) ID: CVE-2018-16068
https://crbug.com/877182
Common Vulnerability Exposure (CVE) ID: CVE-2018-16065
https://crbug.com/867776
Common Vulnerability Exposure (CVE) ID: CVE-2018-16069
https://chromereleases.googleblog.com/2018/09/stable-channel-update-for-desktop.html
https://crbug.com/848238
Common Vulnerability Exposure (CVE) ID: CVE-2018-16070
https://crbug.com/848716
Common Vulnerability Exposure (CVE) ID: CVE-2018-16071
https://www.exploit-db.com/exploits/45443/
https://crbug.com/855211
Common Vulnerability Exposure (CVE) ID: CVE-2018-16085
https://crbug.com/856578
Common Vulnerability Exposure (CVE) ID: CVE-2018-16073
https://crbug.com/863069
Common Vulnerability Exposure (CVE) ID: CVE-2018-16074
https://crbug.com/863623
Common Vulnerability Exposure (CVE) ID: CVE-2018-16075
https://crbug.com/788936
Common Vulnerability Exposure (CVE) ID: CVE-2018-16076
https://crbug.com/867501
Common Vulnerability Exposure (CVE) ID: CVE-2018-16077
https://crbug.com/377995
Common Vulnerability Exposure (CVE) ID: CVE-2018-16078
https://crbug.com/858820
Common Vulnerability Exposure (CVE) ID: CVE-2018-16079
https://crbug.com/723503
Common Vulnerability Exposure (CVE) ID: CVE-2018-16080
https://crbug.com/858929
Common Vulnerability Exposure (CVE) ID: CVE-2018-16081
https://crbug.com/666299
Common Vulnerability Exposure (CVE) ID: CVE-2018-16082
https://crbug.com/851398
Common Vulnerability Exposure (CVE) ID: CVE-2018-16083
https://www.exploit-db.com/exploits/45444/
https://crbug.com/856823
Common Vulnerability Exposure (CVE) ID: CVE-2018-16084
https://crbug.com/865202
Common Vulnerability Exposure (CVE) ID: CVE-2018-16086
https://crbug.com/844428
Common Vulnerability Exposure (CVE) ID: CVE-2018-16072
https://crbug.com/864283
Common Vulnerability Exposure (CVE) ID: CVE-2018-16087
https://crbug.com/848535
Common Vulnerability Exposure (CVE) ID: CVE-2018-16088
https://crbug.com/848531
Common Vulnerability Exposure (CVE) ID: CVE-2018-17457
https://crbug.com/848306
CopyrightCopyright (C) 2018 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.