Aditya K Sood from Team Evil Fingers is back with a new memory exhaustion based denial of service attack which can be triggered remotely in Chrome

Based in his research the vulnerability is triggered when Carriage Return(\r\n\r\n) is passed as an argument to function. This makes Google Chrome generate a large number of windows at the same time resulting in Operating System memory exhaustion.

A PoC is available at

Affected Versions


Posted by Cyber Trunks


