CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 4.3. It affects Chrome. It may be remotely exploitable. It may lead to a denial-of-service condition.
CVE
CVE-2009-3934
Severity
MEDIUM
CVSS
4.3
EPSS
1.38%
Chrome
Original NVD Description
The WebFrameLoaderClient::dispatchDidChangeLocationWithinPage function in src/webkit/glue/webframeloaderclient_impl.cc in Google Chrome before 3.0.195.32 allows user-assisted remote attackers to cause a denial of service via a page-local link, related to an "empty redirect chain," as demonstrated by a message in Yahoo! Mail.