VYPR

Google Chrome

by Google

CVEs (84)

  • CVE-2010-1665May 3, 2010
    risk 0.00cvss —epss 0.02

    Google Chrome before 4.1.249.1064 does not properly handle fonts, which allows remote attackers to cause a denial of service (memory corruption) and possibly have unspecified other impact via unknown vectors.

  • CVE-2010-1236Apr 1, 2010
    risk 0.00cvss —epss 0.01

    The protocolIs function in platform/KURLGoogle.cpp in WebCore in WebKit before r55822, as used in Google Chrome before 4.1.249.1036 and Flock Browser 3.x before 3.0.0.4112, does not properly handle whitespace at the beginning of a URL, which allows remote attackers to conduct…

  • CVE-2009-2071Jun 15, 2009
    risk 0.00cvss —epss 0.01

    Google Chrome before 1.0.154.53 displays a cached certificate for a (1) 4xx or (2) 5xx CONNECT response page returned by a proxy server, which allows man-in-the-middle attackers to spoof an arbitrary https site by letting a browser obtain a valid certificate from this site…

  • CVE-2009-1412Apr 24, 2009
    risk 0.00cvss —epss 0.01

    Argument injection vulnerability in the chromehtml: protocol handler in Google Chrome before 1.0.154.59, when invoked by Internet Explorer, allows remote attackers to determine the existence of files, and open tabs for URLs that do not satisfy the IsWebSafeScheme restriction,…

Page 5 of 5