Google Chrome contains a uninitialized variable access flaw in the PDF viewer that is triggered when handling the JavaScript "in" operator in an unexpected context. With a specially crafted PDF file, a context-dependent attacker can potentially execute arbitrary code.
Upgrade to version 20.0.1132.57 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.