Google Chrome Crashes with All Tabs

Published 03 September 08 07:19 AM | rodtrent

Software:

Google Chrome Browser 0.2.149.27

 

Tested:

Windows XP Professional SP3

 

Result:

Google Chrome Crashes with All Tabs

 

Problem:

An issue exists in how chrome behaves with undefined-handlers in chrome.dll version

0.2.149.27. A crash can result without user interaction. When a user is made to visit

a malicious link, which has an undefined handler followed by a 'special' character,

the chrome crashes with a Google Chrome message window "Whoa! Google Chrome has crashed.

Restart now?". It lies in dealing with the POP EBP instruction when pointed out by the

EIP register at 0x01002FF4.

 

Proof of Concept:

http://evilfingers.com/advisory/google_chrome_poc.php

Filed under: , ,

Comments

No Comments

This Blog

News

    Ni Hao! Wo shi Rod.



    The Bruce Campbell Fan Store



    Proud member of the myITforum Network



Community

Things I've done

myITforum.com

Things I do

Blog Roll

Syndication