VYPR
High severity8.8NVD Advisory· Published Oct 4, 2010· Updated Apr 29, 2026

CVE-2010-1822

CVE-2010-1822

Description

WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3 and Google Chrome before 6.0.472.62, does not properly perform a cast of an unspecified variable, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an SVG element in a non-SVG document.

Affected products

4
  • cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
    Range: <4.1.3
  • cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
    Range: <6.0.472.62
  • OpenSUSE/openSUSE2 versions
    cpe:2.3:o:opensuse:opensuse:11.2:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:opensuse:opensuse:11.2:*:*:*:*:*:*:*
    • cpe:2.3:o:opensuse:opensuse:11.3:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

13

News mentions

0

No linked articles in our index yet.