Google

Chrome

6881 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Medienbericht
  • EPSS 3.63%
  • Veröffentlicht 22.03.2012 16:55:02
  • Zuletzt bearbeitet 16.06.2026 23:40:25

Google Chrome 17.0.963.66 and earlier allows remote attackers to bypass the sandbox protection mechanism by leveraging access to a sandboxed process, as demonstrated by VUPEN during a Pwn2Own competition at CanSecWest 2012. NOTE: the primary affecte...

  • EPSS 3.56%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 16.06.2026 23:32:30

Integer signedness error in the png_inflate function in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote attackers to cause a denial of service (application crash) or possibly exe...

Exploit
  • EPSS 2.14%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 16.06.2026 23:32:31

Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the :first-lette...

  • EPSS 1.76%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 16.06.2026 23:32:31

Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the cross-fade f...

Exploit
  • EPSS 1.91%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 16.06.2026 23:32:31

The WebGL implementation in Google Chrome before 17.0.963.83 does not properly handle CANVAS elements, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

  • EPSS 1.75%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 16.06.2026 23:32:31

Use-after-free vulnerability in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to block splitting.

  • EPSS 1.81%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 16.06.2026 23:32:31

The WebUI privilege implementation in Google Chrome before 17.0.963.83 does not properly perform isolation, which allows remote attackers to bypass intended access restrictions via unspecified vectors.

Exploit
  • EPSS 1.69%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 16.06.2026 23:32:31

The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation, which allows user-assisted remote attackers to have an unspecified impact via a crafted extension.

  • EPSS 1.33%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 16.06.2026 23:32:31

Google Chrome before 17.0.963.83 allows remote attackers to bypass the Same Origin Policy via vectors involving a "magic iframe."

  • EPSS 1.72%
  • Veröffentlicht 22.03.2012 16:55:01
  • Zuletzt bearbeitet 16.06.2026 23:32:32

Google V8, as used in Google Chrome before 17.0.963.83, allows remote attackers to cause a denial of service via vectors that trigger an invalid read operation.