Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-7061

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2008-7061
Last Modified 25 Aug 2009 12:00:00
Published 24 Aug 2009 03:30:00
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2008-7061

Summary

The tooltip manager (chrome/views/tooltip_manager.cc) in Google Chrome 0.2.149.29 Build 1798 and possibly other versions before 0.2.149.30 allows remote attackers to cause a denial of service (CPU consumption or crash) via a tag with a long title attribute, which is not properly handled when displaying a tooltip, a different vulnerability than CVE-2008-6994. NOTE: there is inconsistent information about the environments under which this issue exists.

Vulnerable Systems

Application

  • Google Chrome 0.2.149.29


References

MISC - http://src.chromium.org/viewvc/chrome/trunk/src/chrome/views/tooltip_manager.cc?r1=1287&r2=2042&pathrev=2042

MISC - http://src.chromium.org/viewvc/chrome/trunk/src/chrome/browser/render_widget_host_hwnd.cc?r1=1287&r2=2042&pathrev=2042

XF - google-chrome-titletag-dos(45039)

BID - 30975

BUGTRAQ - 20080910 Re: Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

BUGTRAQ - 20080909 Re: Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

BUGTRAQ - 20080908 Re: Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

BUGTRAQ - 20080908 Chrome(0.2.149.27) title(not the tag) Denial of Service(Freeze) exploit

CONFIRM - http://src.chromium.org/viewvc/chrome?view=rev&revision=2042

CONFIRM - http://googlechromereleases.blogspot.com/2008/09/beta-release-0214930.html


Last Updated: 27 May 2016 10:49:26