CVE-2010-1231
- EPSS 1.4%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 16.06.2026 23:17:54
Google Chrome before 4.1.249.1036 processes HTTP headers before invoking the SafeBrowsing feature, which allows remote attackers to have an unspecified impact via crafted headers.
- EPSS 1.02%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 16.06.2026 23:17:55
Google Chrome before 4.1.249.1036 allows remote attackers to cause a denial of service (memory error) or possibly have unspecified other impact via a malformed SVG document.
- EPSS 2.57%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 16.06.2026 23:17:55
Multiple integer overflows in Google Chrome before 4.1.249.1036 allow remote attackers to have an unspecified impact via vectors involving WebKit JavaScript objects.
CVE-2010-1234
- EPSS 1.15%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 16.06.2026 23:17:55
Unspecified vulnerability in Google Chrome before 4.1.249.1036 allows remote attackers to truncate the URL shown in the HTTP Basic Authentication dialog via unknown vectors.
CVE-2010-1235
- EPSS 0.86%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 16.06.2026 23:17:55
Unspecified vulnerability in Google Chrome before 4.1.249.1036 allows remote attackers to trigger the omission of a download warning dialog via unknown vectors.
CVE-2010-1236
- EPSS 1.35%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 16.06.2026 23:17:55
The protocolIs function in platform/KURLGoogle.cpp in WebCore in WebKit before r55822, as used in Google Chrome before 4.1.249.1036 and Flock Browser 3.x before 3.0.0.4112, does not properly handle whitespace at the beginning of a URL, which allows r...
CVE-2010-1237
- EPSS 1.01%
- Veröffentlicht 01.04.2010 22:30:00
- Zuletzt bearbeitet 16.06.2026 23:17:55
Google Chrome 4.1 BETA before 4.1.249.1036 allows remote attackers to cause a denial of service (memory error) or possibly have unspecified other impact via an empty SVG element.
- EPSS 10.38%
- Veröffentlicht 19.03.2010 21:30:00
- Zuletzt bearbeitet 16.06.2026 23:17:22
Stack consumption vulnerability in the WebCore::CSSSelector function in WebKit, as used in Apple Safari 4.0.4, Apple Safari on iPhone OS and iPhone OS for iPod touch, and Google Chrome 4.0.249, allows remote attackers to cause a denial of service (ap...
CVE-2010-0661
- EPSS 1.59%
- Veröffentlicht 18.02.2010 18:00:01
- Zuletzt bearbeitet 16.06.2026 23:16:36
WebCore/bindings/v8/custom/V8DOMWindowCustom.cpp in WebKit before r52401, as used in Google Chrome before 4.0.249.78, allows remote attackers to bypass the Same Origin Policy via vectors involving the window.open method.
- EPSS 0.98%
- Veröffentlicht 18.02.2010 18:00:01
- Zuletzt bearbeitet 16.06.2026 23:16:36
The ParamTraits<SkBitmap>::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not use the correct variables in calculations designed to prevent integer overflows, which allows attackers to leverage renderer access ...