CVE-2010-4041
- EPSS 0.84%
- Veröffentlicht 21.10.2010 19:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
The sandbox implementation in Google Chrome before 7.0.517.41 on Linux does not properly constrain worker processes, which might allow remote attackers to bypass intended access restrictions via unspecified vectors.
CVE-2010-4042
- EPSS 1.95%
- Veröffentlicht 21.10.2010 19:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly handle element maps, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to "stale elements."
- EPSS 0.58%
- Veröffentlicht 21.10.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly implement the autofill and autocomplete functionality, which allows remote attackers to conduct "profile spamming" attacks via unspecified vectors.
CVE-2010-4034
- EPSS 2.09%
- Veröffentlicht 21.10.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly handle forms, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted HTML document.
CVE-2010-4035
- EPSS 2.09%
- Veröffentlicht 21.10.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly perform autofill operations for forms, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted HTML document.
CVE-2010-4036
- EPSS 1.13%
- Veröffentlicht 21.10.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly handle the unloading of a page, which allows remote attackers to spoof URLs via unspecified vectors.
CVE-2010-4037
- EPSS 0.32%
- Veröffentlicht 21.10.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Google Chrome before 7.0.517.41 allows remote attackers to bypass the pop-up blocker via unknown vectors.
CVE-2010-4038
- EPSS 1.95%
- Veröffentlicht 21.10.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Web Sockets implementation in Google Chrome before 7.0.517.41 does not properly handle a shutdown action, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors.
CVE-2010-4039
- EPSS 0.68%
- Veröffentlicht 21.10.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 on Linux does not properly set the PATH environment variable, which has unspecified impact and attack vectors.
CVE-2010-4040
- EPSS 0.6%
- Veröffentlicht 21.10.2010 19:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 7.0.517.41 does not properly handle animated GIF images, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted image.