Title: Google Chrome PDF Viewer Javascript Handling Memory Corruption
Info
Disclosure
Jul 11, 2012
Discovery
Unknown
Dates
Exploit
Unknown
Solution
Jul 11, 2012
Description
Google Chrome contains a uninitialized variable access flaw in the PDF viewer that is triggered when handling the JavaScript "in" operator in an unexpected context. With a specially crafted PDF file, a context-dependent attacker can potentially execute arbitrary code.
Upgrade to version 20.0.1132.57 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.