CVE-2010-4491
- EPSS 0.69%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 8.0.552.215 does not properly restrict privileged extensions, which allows remote attackers to cause a denial of service (memory corruption) via a crafted extension.
CVE-2010-4492
- EPSS 1.92%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG animations.
CVE-2010-4493
- EPSS 1.58%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service via vectors related to the handling of mouse dragging events.
CVE-2010-4494
- EPSS 1.62%
- Veröffentlicht 07.12.2010 21:00:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath...
CVE-2010-4483
- EPSS 0.27%
- Veröffentlicht 07.12.2010 21:00:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 8.0.552.215 does not properly restrict read access to videos derived from CANVAS elements, which allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive video data via a crafted web site.
- EPSS 0.19%
- Veröffentlicht 07.12.2010 21:00:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 8.0.552.215 does not properly handle HTML5 databases, which allows attackers to cause a denial of service (application crash) via unspecified vectors.
- EPSS 0.2%
- Veröffentlicht 07.12.2010 21:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to bypass the pop-up blocker via unknown vectors.
CVE-2010-4008
- EPSS 0.57%
- Veröffentlicht 17.11.2010 01:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malformed XPath expressions, which allows context-dependent attackers to ca...
- EPSS 8.12%
- Veröffentlicht 06.11.2010 00:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebM libvpx (aka the VP8 Codec SDK) before 0.9.5, as used in Google Chrome before 7.0.517.44, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via invalid frames.
CVE-2010-4204
- EPSS 4.35%
- Veröffentlicht 06.11.2010 00:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, accesses a frame object after this object has been destroyed, which allows remote attackers to cause a denial of service or possibly have unspecified othe...