VYPR
Unrated severityNVD Advisory· Published Dec 22, 2010· Updated Apr 29, 2026

CVE-2010-4576

CVE-2010-4576

Description

browser/worker_host/message_port_dispatcher.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 does not properly handle certain postMessage calls, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted JavaScript code that creates a web worker.

Affected products

2
  • cpe:2.3:o:google:chrome_os:*:*:*:*:*:*:*:*
    Range: <8.0.552.343
  • cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
    Range: <8.0.552.224

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.