The NPAPI implementation in Google Chrome before 12.0.742.112 does not properly handle strings, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
| Software | From | Fixed in |
|---|---|---|
| google / chrome | - | 12.0.742.112 |