Idle Banter For non SV and non bike related chat (and the odd bit of humour - but if any post isn't suitable it'll get deleted real quick).![]() |
![]() |
|
Thread Tools |
![]() |
#1 |
Guest
Posts: n/a
|
![]()
Since it was recently posted about on the .Org, I figured I'd update a few folks. The known issues with Chrome are:
- A known crash. (geeks, POP EBP when EIP=0x01002FF4 - very easy to do when you know how). The crash causes all tabs, and all executables associated with Chrome to close. - A known exploit. Chrome is set to allow automatic file downloads, and this can be abused maliciously. These files can be stored anywhere on the computer. - A way to achieve priviledge escalation, and effectively run code as the escalated user. - The Chrome password store keeps passwords in PLAINTEXT. This combined with other issues above could provide an attacker will all passwords stored on a computer, with the site/server that they are associated. - There is a buffer overflow exception when using the "Save As" dialog. The instructions sent out by my company are that anyone found with Chrome installed on the PC, will be subject to disciplinary procedures. |
![]() |
![]() |
#2 |
Member
Mega Poster
Join Date: Feb 2007
Location: Crewe, Cheshire
Posts: 2,326
|
![]()
Glad I've wiped mine off then. I was watching "Click" on the BBC on Saturday & Google are paying money to Firefox for development.
I tried Chrome & still found that it crashes the same as FF when trying to open .pdf files. I have to revert to IE when doing certain things at work as a lot of files I need to download are .pdf.
__________________
Flickr: http://www.flickr.com/photos/croozenooze/ Facebook : https://www.facebook.com/colin.hughes.1213?ref=tn_tnmn Yoo Toob https://www.youtube.com/channel/UCjG...eMWUx4Ud2dK-yA |
![]() |
![]() |
![]() |
#3 |
Guest
Posts: n/a
|
![]()
I'm still wondering if anyone will understand the EBP/EIP reference, and it's implications - or am I just too geeky? Oh, and googling is classed as cheating.
![]() Last edited by Baph; 10-09-08 at 11:14 AM. |
![]() |
![]() |
#4 | |
Member
Mega Poster
Join Date: Feb 2007
Location: Crewe, Cheshire
Posts: 2,326
|
![]() Quote:
What?????? Maybe I Don't Know Who. Think that covers every eventuality What on earth is EBP/EIP interface????????? Every Birds Pants/Even In Paris?????????
__________________
Flickr: http://www.flickr.com/photos/croozenooze/ Facebook : https://www.facebook.com/colin.hughes.1213?ref=tn_tnmn Yoo Toob https://www.youtube.com/channel/UCjG...eMWUx4Ud2dK-yA |
|
![]() |
![]() |
![]() |
#5 | |
Guest
Posts: n/a
|
![]() Quote:
![]() They're both registers in the CPU. Typically, the EBP is used to reference a stack frame, and the EIP is the current instruction within the stack (sort of an index). When a procedure of code starts, you can tell, because EBP = ESP (another register). That's not what I was getting at though, if someone on the .Org is geeky enough, my original post details HOW to make Chrome crash. I don't like revealing to all & sundry, because that crash is useful with some of the other problems in Chrome, and generally, if you know about the various registers in a CPU, you can't be bothered crashing someones browser to achieve GUID escalations. |
|
![]() |
![]() |
#6 |
Guest
Posts: n/a
|
![]()
A shame
![]() |
![]() |
![]() |
#7 | |
Guest
Posts: n/a
|
![]() Quote:
Both are classed by Google as "features" not bugs. ![]() |
|
![]() |
![]() |
#8 |
Guest
Posts: n/a
|
![]()
Crikey, that's nice of them!!! You'll have to forgive my unfamiliarity with browser architecture (although I claim to work in IT) but the passwords, presumably these are just the ones where it always asks you if you want Chrome to save the password for you? If so, that's lucky, as I always click no anyway. Unless it has a problem with cookies too?
The automatic downloads sounds dodgy though ![]() |
![]() |
![]() |
#9 | |
Guest
Posts: n/a
|
![]() Quote:
The automatic downloads bug can be kicked off with the following: window.setTimeout("location.href='http://localhost/1.exe'", 3000); That's just plain nasty. Especially concidering that JavaScript could be used to execute 1.exe as well. The script can also specify where to save the file to, with the use of certain HTML headers. This can be ANYWHERE on your PC. EDIT: Just found the specifics on the workaround for the automatic downloads. Apparently 149.29, released the day before yesterday resolves it. The password saving, requires your permission to save passwords. Last edited by Baph; 10-09-08 at 12:51 PM. |
|
![]() |
![]() |
#10 |
Guest
Posts: n/a
|
![]()
Cheers Baph! I don't know much JS but that's pseudocode enough for me to read - doesn't sound great. Off to download the latest version when I get in tonight
![]() |
![]() |
![]() |
|
|
![]() |
||||
Thread | Thread Starter | Forum | Replies | Last Post |
chrome windshield | kidpuffy | Stuff Wanted | 4 | 27-06-11 06:31 PM |
Chrome Exhaust Cleaner | Sledgehammer | For Sale - SV's and SV related items | 5 | 06-05-07 11:45 AM |
chrome windshield | kidpuffy | SV Talk, Tuning & Tweaking | 1 | 09-05-06 07:50 AM |
Chrome McLaren | Scoobs | Idle Banter | 11 | 13-02-06 08:56 PM |