CVE-2008-6998
HIGH 9.3EPSS 9.7%
Stack-based buffer overflow in chrome/common/gfx/url_elider.cc in Google Chrome 0.2.149.27 and other versions before 0.2.149.29 might allow user-assisted remote attackers to execute arbitrary code via a link target (href attribute) with a large number of path elements, which triggers the overflow when the status bar is updated after the user hovers over the link.
- CVSS v2.0
- 9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C - EPSS
- 9.68% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2009-08-18
- Updated
- 2024-08-07