PoC Index

CVE-2008-6994

HIGH 9.3EPSS 10.2%

Stack-based buffer overflow in the SaveAs feature (SaveFileAsWithFilter function) in win_util.cc in Google Chrome 0.2.149.27 allows user-assisted remote attackers to execute arbitrary code via a web page with a long TITLE element, which triggers the overflow when the user saves the page and a long filename is generated. NOTE: it might be possible to exploit this issue via an HTTP response that includes a long filename in a Content-Disposition header.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
10.22% chance of exploitation in the next 30 days, 95th percentile
Published
2009-08-18
Updated
2024-08-07

Proof-of-concept exploits (1)

ExploitDB entries (1)

References

Related