CVE-2010-0662 Information

Description

The ParamTraitsSkBitmap::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not use the correct variables in calculations designed to prevent integer overflows which allows attackers to leverage renderer access to cause a denial of service or possibly have unspecified other impact via bitmap data related to deserialization.

Reference

http://code.google.com/p/chromium/issues/detail?id=31307 http://googlechromereleases.blogspot.com/2010/01/stable-channel-update_25.html http://securitytracker.com/id?1023506 http://sites.google.com/a/chromium.org/dev/Home/chromium-security/chromium-security-bugs https://exchange.xforce.ibmcloud.com/vulnerabilities/56627 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A14457

Share on: