Korean
<< Back
VID 28883
Severity 40
Port 139,445
Protocol TCP
Class SMB
Detailed Description The version of Google Chrome installed on the remote Windows host is prior to 54.0.2840.99. It is, therefore, affected by the following vulnerabilities :

- A remote code execution vulnerability exists in the FFmpeg component due to an integer overflow condition in the mov_read_keys() function in mov.c caused by improper validation of user-supplied input. An unauthenticated, remote attacker can exploit this, by convincing a user to visit a website containing specially crafted content, to cause a denial of service condition or the execution of arbitrary code. (CVE-2016-5199)

- A denial of service vulnerability exists in the V8 component due to an out-of-bounds read error that is triggered when handling 'Math.sign'. An unauthenticated, remote attacker can exploit this, by convincing a user to visit a website containing specially crafted content, to crash the browser or disclose memory contents. (CVE-2016-5200)

- An information disclosure vulnerability exists due to a flaw in the expose() function in utils.js. An unauthenticated, remote attacker can exploit this, by convincing a user to visit a website containing specially crafted content, to disclose sensitive internal class information. (CVE-2016-5201)

- An unspecified vulnerability exists in the PruneExpiredDevices() function in dial_registry.cc that allows an unauthenticated, remote attacker to have an unspecified impact. (CVE-2016-5202)

* Note: This check requires an account with administrative privileges which can log into the host to scan. Absence of this condition will result in the check not being performed and a False Negative for all vulnerable hosts.

* References:
https://googlechromereleases.blogspot.kr/2016/11/stable-channel-update-for-desktop_9.html

* Platforms Affected:
Google Chrome versions prior to 54.0.2840.99
Microsoft Windows Any version
Recommendation Upgrade to the latest version Google Chrome (54.0.2840.99 or later), available from the Google Web site at http://www.google.com/chrome/
Related URL CVE-2016-5199,CVE-2016-5200,CVE-2016-5201,CVE-2016-5202 (CVE)
Related URL 94196 (SecurityFocus)
Related URL (ISS)