CVE-2010-4575
- EPSS 1.34%
- Veröffentlicht 22.12.2010 01:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ThemeInstalledInfoBarDelegate::Observe function in browser/extensions/theme_installed_infobar_delegate.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 does not properly handle incorrect tab interaction by an extension, whi...
- EPSS 2.19%
- Veröffentlicht 22.12.2010 01:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
browser/worker_host/message_port_dispatcher.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 does not properly handle certain postMessage calls, which allows remote attackers to cause a denial of service (NULL pointer dereferen...
CVE-2010-4577
- EPSS 4.27%
- Veröffentlicht 22.12.2010 01:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The CSSParser::parseFontFaceSrc function in WebCore/css/CSSParser.cpp in WebKit, as used in Google Chrome before 8.0.552.224, Chrome OS before 8.0.552.343, webkitgtk before 1.2.6, and other products does not properly parse Cascading Style Sheets (CSS...
CVE-2010-4578
- EPSS 1.77%
- Veröffentlicht 22.12.2010 01:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 do not properly perform cursor handling, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to "stale po...
CVE-2010-4485
- EPSS 0.63%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 8.0.552.215 does not properly restrict the generation of file dialogs, which allows remote attackers to cause a denial of service (reduced usability and possible application crash) via a crafted web site.
CVE-2010-4486
- EPSS 1.98%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to history handling.
CVE-2010-4487
- EPSS 0.73%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Incomplete blacklist vulnerability in Google Chrome before 8.0.552.215 on Linux and Mac OS X allows remote attackers to have an unspecified impact via a "dangerous file."
- EPSS 1.01%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 8.0.552.215 does not properly handle HTTP proxy authentication, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors.
CVE-2010-4489
- EPSS 0.76%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
libvpx, as used in Google Chrome before 8.0.552.215 and possibly other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WebM video. NOTE: this vulnerability exists because of a regression.
CVE-2010-4490
- EPSS 1.8%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via malformed video content that triggers an indexing error.