Unrated severityNVD Advisory· Published Aug 24, 2009· Updated Jun 16, 2026
CVE-2008-7061
CVE-2008-7061
Description
The tooltip manager (chrome/views/tooltip_manager.cc) in Google Chrome 0.2.149.29 Build 1798 and possibly other versions before 0.2.149.30 allows remote attackers to cause a denial of service (CPU consumption or crash) via a tag with a long title attribute, which is not properly handled when displaying a tooltip, a different vulnerability than CVE-2008-6994. NOTE: there is inconsistent information about the environments under which this issue exists.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
16- src.chromium.org/viewvc/chrome/trunk/src/chrome/browser/render_widget_host_hwnd.ccnvdExploitPatch
- src.chromium.org/viewvc/chrome/trunk/src/chrome/views/tooltip_manager.ccnvdExploitPatch
- www.securityfocus.com/archive/1/496138/100/0/threadednvdExploit
- www.securityfocus.com/archive/1/496145/100/0/threadednvdExploit
- www.securityfocus.com/archive/1/496151/100/0/threadednvdExploit
- www.securityfocus.com/bid/30975nvdExploit
- googlechromereleases.blogspot.com/2008/09/beta-release-0214930.htmlnvd
- src.chromium.org/viewvc/chromenvd
- www.blackhat.org.il/exploits/chrome-freeze-exploit.htmlnvd
- www.securityfocus.com/archive/1/496078/100/0/threadednvd
- www.securityfocus.com/archive/1/496094/100/0/threadednvd
- www.securityfocus.com/archive/1/496101/100/0/threadednvd
- www.securityfocus.com/archive/1/496126/100/0/threadednvd
- www.securityfocus.com/archive/1/496146/100/0/threadednvd
- www.securityfocus.com/archive/1/496172/100/100/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/45039nvd
News mentions
0No linked articles in our index yet.