CVE-2010-3805
- EPSS 7.13%
- Veröffentlicht 22.11.2010 13:00:17
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer underflow in WebKit in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors invo...
CVE-2010-4008
- EPSS 0.57%
- Veröffentlicht 17.11.2010 01:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which allows context-dependent attackers to ca...
CVE-2010-1822
- EPSS 2.97%
- Veröffentlicht 04.10.2010 21:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3 and Google Chrome before 6.0.472.62, does not properly perform a cast of an unspecified variable, which allows remote attackers to execute arbitrary code or cause a denial of service...
CVE-2010-1823
- EPSS 2.54%
- Veröffentlicht 24.09.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in WebKit before r65958, as used in Google Chrome before 6.0.472.59, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger use of document APIs such as doc...
CVE-2010-1806
- EPSS 4.94%
- Veröffentlicht 10.09.2010 19:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via run-in styling in an element, related to object pointers.
CVE-2010-1807
- EPSS 80.55%
- Veröffentlicht 10.09.2010 19:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2; Android before 2.2; and webkitgtk before 1.2.6; does not properly validate floating-point data, which allows remote attackers to execute arbitrary code or cause a denial of service (applic...
CVE-2010-1805
- EPSS 0.05%
- Veröffentlicht 10.09.2010 19:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Untrusted search path vulnerability in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2 on Windows allows local users to gain privileges via a Trojan horse explorer.exe (aka Windows Explorer) program in a directory containing a file that had been d...
CVE-2010-3259
- EPSS 0.82%
- Veröffentlicht 07.09.2010 18:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, does not properly restrict read access to images derived from CANVAS elements, which allows remote attackers to bypass t...
CVE-2010-3257
- EPSS 12.15%
- Veröffentlicht 07.09.2010 18:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (applicat...
- EPSS 12.28%
- Veröffentlicht 24.08.2010 20:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple use-after-free vulnerabilities in WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 5.0.375.127, and webkitgtk before 1.2.6, allow remote attackers to execute arbitrary code or cause a denial of servic...