Critical severity9.8NVD Advisory· Published Nov 6, 2010· Updated Apr 29, 2026
CVE-2010-4203
CVE-2010-4203
Description
WebM libvpx (aka the VP8 Codec SDK) before 0.9.5, as used in Google Chrome before 7.0.517.44, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via invalid frames.
Affected products
5- cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
12- code.google.com/p/chromium/issues/detailnvdExploitIssue TrackingMailing ListVendor Advisory
- googlechromereleases.blogspot.com/2010/11/stable-channel-update.htmlnvdRelease NotesVendor Advisory
- secunia.com/advisories/42109nvdVendor Advisory
- security.gentoo.org/glsa/glsa-201101-03.xmlnvdThird Party Advisory
- www.vupen.com/english/advisories/2011/0115nvdPermissions RequiredThird Party Advisory
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12198nvdThird Party Advisory
- rhn.redhat.com/errata/RHSA-2010-0999.htmlnvdThird Party Advisory
- secunia.com/advisories/42118nvdBroken Link
- secunia.com/advisories/42690nvdBroken Link
- secunia.com/advisories/42908nvdBroken Link
- review.webmproject.org/gitwebnvd
- review.webmproject.org/gitwebnvd
News mentions
0No linked articles in our index yet.