CVE-2008-6995 PUBLISHED CVSS 4.300000190734863 MEDIUM

Integer underflow in net/base/escape.cc in chrome.dll in Google Chrome 0.2.149.27 allows remote attackers to cause a denial of service (browser crash) via a URI with an invalid handler followed by a "%" (percent) character, which triggers a buffer over-read, as demonstrated using an "about:%" URI.

EPSS 8.07% · 92.1th percentile

Risk Scores

CVSS v2.0
4.300000190734863
EPSS Score
8.07%
92.1th percentile

Affected Products

VendorProductVersions
n/an/an/a
googlechrome0.2.149.27

Timeline

References

Open in Interactive Console →