VYPR

Chrome

by Google

Source repositories

CVEs (6,981)

  • CVE-2011-3913Dec 13, 2011
    risk 0.00cvss —epss 0.02

    Use-after-free vulnerability in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to Range handling.

  • CVE-2011-3912Dec 13, 2011
    risk 0.00cvss —epss 0.01

    Use-after-free vulnerability in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to SVG filters.

  • CVE-2011-3911Dec 13, 2011
    risk 0.00cvss —epss 0.01

    Google Chrome before 16.0.912.63 does not properly handle PDF documents, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

  • CVE-2011-3910Dec 13, 2011
    risk 0.00cvss —epss 0.01

    Google Chrome before 16.0.912.63 does not properly handle YUV video frames, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

  • CVE-2011-3909Dec 13, 2011
    risk 0.00cvss —epss 0.02

    The Cascading Style Sheets (CSS) implementation in Google Chrome before 16.0.912.63 on 64-bit platforms does not properly manage property arrays, which allows remote attackers to cause a denial of service (memory corruption) via unspecified vectors.

  • CVE-2011-3908Dec 13, 2011
    risk 0.00cvss —epss 0.02

    Google Chrome before 16.0.912.63 does not properly parse SVG documents, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

  • CVE-2011-3907Dec 13, 2011
    risk 0.00cvss —epss 0.01

    The view-source feature in Google Chrome before 16.0.912.63 allows remote attackers to spoof the URL bar via unspecified vectors.

  • CVE-2011-3906Dec 13, 2011
    risk 0.00cvss —epss 0.01

    The PDF parser in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

  • CVE-2011-3905Dec 13, 2011
    risk 0.00cvss —epss 0.02

    libxml2, as used in Google Chrome before 16.0.912.63, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

  • CVE-2011-3904Dec 13, 2011
    risk 0.00cvss —epss 0.01

    Use-after-free vulnerability in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to bidirectional text (aka bidi) handling.

  • CVE-2011-3903Dec 13, 2011
    risk 0.00cvss —epss 0.01

    Google Chrome before 16.0.912.63 does not properly perform regex matching, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

  • CVE-2011-4692Dec 7, 2011
    risk 0.00cvss —epss 0.01

    WebKit, as used in Apple Safari 5.1.1 and earlier and Google Chrome 15 and earlier, does not prevent capture of data about the time required for image loading, which makes it easier for remote attackers to determine whether an image exists in the browser cache via crafted…

  • CVE-2011-4691Dec 7, 2011
    risk 0.00cvss —epss 0.01

    Google Chrome 15.0.874.121 and earlier does not prevent capture of data about the times of Same Origin Policy violations during IFRAME loading attempts, which makes it easier for remote attackers to determine whether a document exists in the browser cache via crafted JavaScript…

  • CVE-2010-5073Dec 7, 2011
    risk 0.00cvss —epss 0.01

    The JavaScript implementation in Google Chrome 4 does not properly restrict the set of values contained in the object returned by the getComputedStyle method, which allows remote attackers to obtain sensitive information about visited web pages by calling this method. NOTE: this…

  • CVE-2010-5069Dec 7, 2011
    risk 0.00cvss —epss 0.01

    The Cascading Style Sheets (CSS) implementation in Google Chrome 4 does not properly handle the :visited pseudo-class, which allows remote attackers to obtain sensitive information about visited web pages via a crafted HTML document. NOTE: this may overlap CVE-2010-2264.

  • CVE-2011-4548Nov 24, 2011
    risk 0.00cvss —epss 0.01

    Multiple unspecified vulnerabilities in Google Chrome before 16.0.912.44 on the Acer AC700, Samsung Series 5, and Cr-48 Chromebook platforms have unknown impact and attack vectors.

  • CVE-2011-3900Nov 17, 2011
    risk 0.00cvss —epss 0.01

    Google V8, as used in Google Chrome before 15.0.874.121, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an out-of-bounds write operation.

  • CVE-2011-3898Nov 11, 2011
    risk 0.00cvss —epss 0.02

    Google Chrome before 15.0.874.120, when Java Runtime Environment (JRE) 7 is used, does not request user confirmation before applet execution begins, which allows remote attackers to have an unspecified impact via a crafted applet.

  • CVE-2011-3897Nov 11, 2011
    risk 0.00cvss —epss 0.02

    Use-after-free vulnerability in Google Chrome before 15.0.874.120 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to editing.

  • CVE-2011-3896Nov 11, 2011
    risk 0.00cvss —epss 0.01

    Buffer overflow in Google Chrome before 15.0.874.120 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to shader variable mapping.

Page 329 of 350