Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:STC:CHROME:JS-MSGBOX-DOS

Severity

High

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

Google Chrome Java Script Message Box Denial of Service

Release Date

2014/09/15

Update Number

2419

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: Google Chrome Java Script Message Box Denial of Service


This signature detects attempts to exploit a known vulnerability against Google Chrome. A successful attack can result in a denial-of-service condition.

Extended Description

Google Chrome is prone to a vulnerability that allows access to out-of-bounds memory. The problem occurs because the application fails to perform adequate boundary checks on user-supplied data. An attacker can exploit this issue to cause the affected browser to stop responding and possibly to disclose potentially sensitive information. The attacker may also be able to execute arbitrary code, but this has not been confirmed. Google Chrome 1.0.154.48 is vulnerable; other versions may also be affected. NOTE: The validity of this vulnerability is in dispute due to conflicting reports. We will update this BID when more definitive information is available.

Affected Products

  • Google Chrome 1.0.154.48

References

  • BugTraq: 34130
  • URL: http://src.chromium.org/viewvc/chrome?revision=13693&view=revision

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out