Use-after-free vulnerability in Google Chrome via DOM ranges (rpm)
|ID: oval:org.secpod.oval:def:16047||Date: (C)2013-11-26 (M)2018-05-06|
|Class: VULNERABILITY||Family: unix|
The host is installed with Google Chrome before 31.0.1650.48 and is prone to an use-after-free vulnerability. The flaw is present in core/dom/ContainerNode.cpp in blink, which fails to properly handle the DOM range objects. Successful exploitation allows remote attackers to cause a denial of service.