Google Chrome 0.2.149.29 and 0.2.149.30 allows remote attackers to cause a denial of service (memory consumption) via an HTML document containing a carriage return ("\r\n\r\n") argument to the window.open function.
- http://secniche.org/gcrds.html
- http://securityreason.com/securityalert/4339
- https://www.exploit-db.com/exploits/6554
No PoCs found on GitHub currently.