PoC Index

CVE-2008-6998

HIGH 9.3EPSS 9.7%

Stack-based buffer overflow in chrome/common/gfx/url_elider.cc in Google Chrome 0.2.149.27 and other versions before 0.2.149.29 might allow user-assisted remote attackers to execute arbitrary code via a link target (href attribute) with a large number of path elements, which triggers the overflow when the status bar is updated after the user hovers over the link.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
9.68% chance of exploitation in the next 30 days, 95th percentile
Published
2009-08-18
Updated
2024-08-07

ExploitDB entries (1)

References

Related