- EPSS 5.38%
- Veröffentlicht 15.06.2010 18:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via vectors involving remote fonts in conjunction with sh...
CVE-2010-1770
- EPSS 9.73%
- Veröffentlicht 11.06.2010 19:30:20
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, Apple Safari before 4.1 on Mac OS X 10.4, and Google Chrome before 5.0.375.70 does not properly handle a transformation of a text node that has the IBM1147 character set, wh...
CVE-2010-2120
- EPSS 0.78%
- Veröffentlicht 01.06.2010 20:30:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome 1.0.154.48 allows remote attackers to cause a denial of service (resource consumption) via JavaScript code containing an infinite loop that creates IFRAME elements for invalid news:// URIs.
- EPSS 0.35%
- Veröffentlicht 28.05.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 5.0.375.55 does not properly follow the Safe Browsing specification's requirements for canonicalization of URLs, which has unspecified impact and remote attack vectors.
CVE-2010-2106
- EPSS 0.37%
- Veröffentlicht 28.05.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Google Chrome before 5.0.375.55 might allow remote attackers to spoof the URL bar via vectors involving unload event handlers.
- EPSS 0.35%
- Veröffentlicht 28.05.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Google Chrome before 5.0.375.55 allows attackers to cause a denial of service (memory error) or possibly have unspecified other impact via vectors related to the Safe Browsing functionality.
CVE-2010-2108
- EPSS 0.28%
- Veröffentlicht 28.05.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Google Chrome before 5.0.375.55 allows remote attackers to bypass the whitelist-mode plugin blocker via unknown vectors.
CVE-2010-2109
- EPSS 0.7%
- Veröffentlicht 28.05.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Google Chrome before 5.0.375.55 allows user-assisted remote attackers to cause a denial of service (memory error) or possibly have unspecified other impact via vectors related to the "drag + drop" functionality.
CVE-2010-2110
- EPSS 0.24%
- Veröffentlicht 28.05.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 5.0.375.55 does not properly execute JavaScript code in the extension context, which has unspecified impact and remote attack vectors.
- EPSS 0.54%
- Veröffentlicht 20.05.2010 17:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome 1.0.154.48 executes a mail application in situations where an IFRAME element has a mailto: URL in its SRC attribute, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with m...