The sandbox implementation in Google Chrome before 6.0.472.53 does not properly deserialize parameters, which has unspecified impact and remote attack vectors.
The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Chrome | * | 6.0.472.53 (excluding) | |
Chromium-browser | Ubuntu | lucid | * |
Chromium-browser | Ubuntu | upstream | * |