{ "schema_version": "1.4.0", "id": "GHSA-v865-8vvq-3764", "modified": "2022-05-17T00:36:59Z", "published": "2022-05-17T00:36:59Z", "aliases": [ "CVE-2008-6998" ], "details": "Stack-based buffer overflow in chrome/common/gfx/url_elider.cc in Google Chrome 0.2.149.27 and other versions before 0.2.149.29 might allow user-assisted remote attackers to execute arbitrary code via a link target (href attribute) with a large number of path elements, which triggers the overflow when the status bar is updated after the user hovers over the link.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-6998" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/44934" }, { "type": "WEB", "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/45032" }, { "type": "WEB", "url": "https://www.exploit-db.com/exploits/6372" }, { "type": "WEB", "url": "http://googlechromereleases.blogspot.com/2008/09/beta-release-0214929.html" }, { "type": "WEB", "url": "http://osvdb.org/48264" }, { "type": "WEB", "url": "http://shinnok.evonet.ro/vulns_html/chrome.html" }, { "type": "WEB", "url": "http://src.chromium.org/viewvc/chrome/branches/chrome_official_branch/src/chrome/common/gfx/url_elider.cc?r1=1774&r2=1797&pathrev=1797" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/31034" }, { "type": "WEB", "url": "http://www.securityfocus.com/bid/31071" } ], "database_specific": { "cwe_ids": [ "CWE-119" ], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2009-08-19T05:24:00Z" } }