First published: Wed Jul 22 2009(Updated: )
Google Chrome 2.x through 2.0.172 allows remote attackers to cause a denial of service (application crash) via a long Unicode string argument to the write method, a related issue to CVE-2009-2479.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | =2.0.156.1 | |
Google Chrome | =2.0.157.0 | |
Google Chrome | =2.0.157.2 | |
Google Chrome | =2.0.158.0 | |
Google Chrome | =2.0.159.0 | |
Google Chrome | =2.0.172 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2578 is classified as a denial of service vulnerability, which can lead to application crashes.
The recommended fix for CVE-2009-2578 is to update Google Chrome to the latest version, as vulnerable versions are no longer supported.
CVE-2009-2578 affects Google Chrome versions 2.0.156.1 through 2.0.172.
Yes, CVE-2009-2578 can be exploited by remote attackers via crafted Unicode string arguments.
CVE-2009-2578 can lead to denial of service attacks, causing the application to crash when exploited.