Record summary

CVE-2008-6998 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.

Description

Stack-based buffer overflow in chrome/common/gfx/url_elider.cc in Google Chrome 0.2.149.27 and other versions before 0.2.149.29 might allow user-assisted remote attackers to execute arbitrary code via a link target (href attribute) with a large number of path elements, which triggers the overflow when the status bar is updated after the user hovers over the link.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBGoogle Chrome 0.2.149.27 - A HREF Denial of ServiceExploitDB exploitby ShinnokNot analyzed1 file
ExploitDB

PoC details

References

10