Google Skia contains an unspecified out-of-bounds read flaw. With specially crafted graphics, a context-dependent attacker can cause a crash and potentially disclose memory contents.
Classification
Location:
Context Dependent
Attack Type:
Input Manipulation
Impact:
Loss of Confidentiality
Solution:
Third-Party Solution
Exploit:
Exploit Unknown
Disclosure:
Vendor Verified,
Coordinated Disclosure
OSVDB:
Web Related
Solution
OSVDB is not currently aware of a solution for this vulnerability.
Upgrade to Google Chrome version 19.0.1084.52 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.