- EPSS 0.54%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 4.1.249.1036 allows remote attackers to cause a denial of service (memory error) or possibly have unspecified other impact via a malformed SVG document.
- EPSS 1.83%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 25.06.2025 16:55:51
Multiple integer overflows in Google Chrome before 4.1.249.1036 allow remote attackers to have an unspecified impact via vectors involving WebKit JavaScript objects.
CVE-2010-1234
- EPSS 0.58%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Google Chrome before 4.1.249.1036 allows remote attackers to truncate the URL shown in the HTTP Basic Authentication dialog via unknown vectors.
CVE-2010-1235
- EPSS 0.24%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in Google Chrome before 4.1.249.1036 allows remote attackers to trigger the omission of a download warning dialog via unknown vectors.
CVE-2010-1236
- EPSS 0.62%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The protocolIs function in platform/KURLGoogle.cpp in WebCore in WebKit before r55822, as used in Google Chrome before 4.1.249.1036 and Flock Browser 3.x before 3.0.0.4112, does not properly handle whitespace at the beginning of a URL, which allows r...
CVE-2010-1237
- EPSS 0.52%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome 4.1 BETA before 4.1.249.1036 allows remote attackers to cause a denial of service (memory error) or possibly have unspecified other impact via an empty SVG element.
- EPSS 32.17%
- Veröffentlicht 19.03.2010 21:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Stack consumption vulnerability in the WebCore::CSSSelector function in WebKit, as used in Apple Safari 4.0.4, Apple Safari on iPhone OS and iPhone OS for iPod touch, and Google Chrome 4.0.249, allows remote attackers to cause a denial of service (ap...
CVE-2010-0661
- EPSS 1.62%
- Veröffentlicht 18.02.2010 18:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebCore/bindings/v8/custom/V8DOMWindowCustom.cpp in WebKit before r52401, as used in Google Chrome before 4.0.249.78, allows remote attackers to bypass the Same Origin Policy via vectors involving the window.open method.
- EPSS 0.49%
- Veröffentlicht 18.02.2010 18:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ParamTraits<SkBitmap>::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not use the correct variables in calculations designed to prevent integer overflows, which allows attackers to leverage renderer access ...
- EPSS 0.38%
- Veröffentlicht 18.02.2010 18:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ParamTraits<SkBitmap>::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not initialize the memory locations that will hold bitmap data, which might allow remote attackers to obtain potentially sensitive infor...