8.8

CVE-2010-1773

Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit before r59950, as used in Google Chrome before 5.0.375.70, allows remote attackers to obtain sensitive information, cause a denial of service (memory corruption and application crash), or possibly execute arbitrary code via vectors related to list markers for HTML lists, aka rdar problem 8009118.

Data is provided by the National Vulnerability Database (NVD)
GoogleChrome Version < 5.0.375.70
RedhatEnterprise Linux Version6.0
CanonicalUbuntu Linux Version9.10
CanonicalUbuntu Linux Version10.04 SwEdition-
CanonicalUbuntu Linux Version10.10
OpensuseOpensuse Version11.2
OpensuseOpensuse Version11.3
FedoraprojectFedora Version12
FedoraprojectFedora Version13
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 1.78% 0.81
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
CWE-193 Off-by-one Error

A product calculates or uses an incorrect maximum or minimum value that is 1 more, or 1 less, than the correct value.

http://trac.webkit.org/changeset/59950
Patch
Vendor Advisory
Mailing List
http://www.securityfocus.com/bid/41575
Third Party Advisory
VDB Entry
https://bugs.webkit.org/show_bug.cgi?id=39508
Vendor Advisory
Permissions Required
https://bugzilla.redhat.com/show_bug.cgi?id=596500
Third Party Advisory
Issue Tracking