VYPR

Vendor CVEs

Google

All CVEs

11,327 total · sorted by risk
  • CVE-2011-2348Jun 29, 2011
    risk 0.00cvss epss 0.01

    Google V8, as used in Google Chrome before 12.0.742.112, performs an incorrect bounds check, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-2347Jun 29, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 12.0.742.112 does not properly handle Cascading Style Sheets (CSS) token sequences, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-2346Jun 29, 2011
    risk 0.00cvss epss 0.01

    Use-after-free vulnerability in Google Chrome before 12.0.742.112 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving SVG fonts.

  • CVE-2011-2345Jun 29, 2011
    risk 0.00cvss epss 0.01

    The NPAPI implementation in Google Chrome before 12.0.742.112 does not properly handle strings, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

  • CVE-2011-2342Jun 9, 2011
    risk 0.00cvss epss 0.02

    The DOM implementation in Google Chrome before 12.0.742.91 allows remote attackers to bypass the Same Origin Policy via unspecified vectors.

  • CVE-2011-2332Jun 9, 2011
    risk 0.00cvss epss 0.01

    Google V8, as used in Google Chrome before 12.0.742.91, allows remote attackers to bypass the Same Origin Policy via unspecified vectors.

  • CVE-2011-1819Jun 9, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 12.0.742.91 allows remote attackers to perform unspecified injection into a chrome:// page via vectors related to extensions.

  • CVE-2011-1818Jun 9, 2011
    risk 0.00cvss epss 0.01

    Use-after-free vulnerability in the image loader in Google Chrome before 12.0.742.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-1817Jun 9, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 12.0.742.91 does not properly implement history deletion, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-1816Jun 9, 2011
    risk 0.00cvss epss 0.01

    Use-after-free vulnerability in the developer tools in Google Chrome before 12.0.742.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-1815Jun 9, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 12.0.742.91 allows remote attackers to inject script into a tab page via vectors related to extensions.

  • CVE-2011-1814Jun 9, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 12.0.742.91 attempts to read data from an uninitialized pointer, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-1813Jun 9, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 12.0.742.91 does not properly implement the framework for extensions, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."

  • CVE-2011-1812Jun 9, 2011
    risk 0.00cvss epss 0.02

    Google Chrome before 12.0.742.91 allows remote attackers to bypass intended access restrictions via vectors related to extensions.

  • CVE-2011-1811Jun 9, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 12.0.742.91 does not properly handle a large number of form submissions, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors.

  • CVE-2011-1810Jun 9, 2011
    risk 0.00cvss epss 0.01

    The Cascading Style Sheets (CSS) implementation in Google Chrome before 12.0.742.91 does not properly restrict access to the visit history, which allows remote attackers to obtain sensitive information via unspecified vectors.

  • CVE-2011-1809Jun 9, 2011
    risk 0.00cvss epss 0.01

    Use-after-free vulnerability in the accessibility feature in Google Chrome before 12.0.742.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-1808Jun 9, 2011
    risk 0.00cvss epss 0.01

    Use-after-free vulnerability in Google Chrome before 12.0.742.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to incorrect integer calculations during float handling.

  • CVE-2011-1807May 26, 2011
    risk 0.00cvss epss 0.03

    Google Chrome before 11.0.696.71 does not properly handle blobs, which allows remote attackers to execute arbitrary code via unspecified vectors that trigger an out-of-bounds write.

  • CVE-2011-1806May 26, 2011
    risk 0.00cvss epss 0.03

    Google Chrome before 11.0.696.71 does not properly implement the GPU command buffer, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.

  • CVE-2011-1804May 26, 2011
    risk 0.00cvss epss 0.01

    rendering/RenderBox.cpp in WebCore in WebKit before r86862, as used in Google Chrome before 11.0.696.71, does not properly render floats, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a…

  • CVE-2011-1801May 26, 2011
    risk 0.00cvss epss 0.01

    Unspecified vulnerability in Google Chrome before 11.0.696.71 allows remote attackers to bypass the pop-up blocker via unknown vectors.

  • CVE-2011-2171May 24, 2011
    risk 0.00cvss epss 0.01

    Unspecified vulnerability in the dbugs package in Google Chrome OS before R12 0.12.433.38 Beta has unknown impact and attack vectors.

  • CVE-2011-2170May 24, 2011
    risk 0.00cvss epss 0.00

    Google Chrome OS before R12 0.12.433.38 Beta, when Guest mode is enabled, does not prevent changes on the about:flags page, which has unspecified impact and local attack vectors.

  • CVE-2011-2169May 24, 2011
    risk 0.00cvss epss 0.00

    Google Chrome OS before R12 0.12.433.38 Beta allows local users to gain privileges by creating a /var/lib/chromeos-aliases.conf file and placing commands in it.

  • CVE-2011-1800May 16, 2011
    risk 0.00cvss epss 0.01

    Multiple integer overflows in the SVG Filters implementation in WebCore in WebKit in Google Chrome before 11.0.696.68 allow remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-1799May 16, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.68 does not properly perform casts of variables during interaction with the WebKit engine, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-2075May 10, 2011
    risk 0.00cvss epss 0.02

    Unspecified vulnerability in Google Chrome 11.0.696.65 on Windows 7 SP1 allows remote attackers to execute arbitrary code via unknown vectors. NOTE: as of 20110510, the only disclosure is a vague advisory that possibly relates to multiple vulnerabilities or multiple products. …

  • CVE-2011-1456May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly handle PDF forms, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to "stale pointers."

  • CVE-2011-1455May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly handle PDF documents with multipart encoding, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted document.

  • CVE-2011-1454May 3, 2011
    risk 0.00cvss epss 0.01

    Use-after-free vulnerability in the DOM id handling functionality in Google Chrome before 11.0.696.57 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted HTML document.

  • CVE-2011-1452May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 allows user-assisted remote attackers to spoof the URL bar via vectors involving a redirect and a manual reload.

  • CVE-2011-1451May 3, 2011
    risk 0.00cvss epss 0.02

    Google Chrome before 11.0.696.57 does not properly handle DOM id maps, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to "dangling pointers."

  • CVE-2011-1450May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly present file dialogs, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to "dangling pointers."

  • CVE-2011-1449May 3, 2011
    risk 0.00cvss epss 0.02

    Use-after-free vulnerability in the WebSockets implementation in Google Chrome before 11.0.696.57 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-1448May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly perform height calculations, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."

  • CVE-2011-1447May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly handle drop-down lists, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."

  • CVE-2011-1446May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 allows remote attackers to spoof the URL bar via vectors involving (1) a navigation error or (2) an interrupted load.

  • CVE-2011-1445May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly handle SVG documents, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

  • CVE-2011-1444May 3, 2011
    risk 0.00cvss epss 0.01

    Race condition in the sandbox launcher implementation in Google Chrome before 11.0.696.57 on Linux allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-1443May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly implement layering, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to "stale pointers."

  • CVE-2011-1442May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly handle mutation events, which allows remote attackers to cause a denial of service (node tree corruption) or possibly have unspecified other impact via unknown vectors.

  • CVE-2011-1441May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly perform a cast of an unspecified variable during handling of floating select lists, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted HTML document.

  • CVE-2011-1440May 3, 2011
    risk 0.00cvss epss 0.02

    Use-after-free vulnerability in Google Chrome before 11.0.696.57 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the ruby element and Cascading Style Sheets (CSS) token sequences.

  • CVE-2011-1439May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 on Linux does not properly isolate renderer processes, which has unspecified impact and remote attack vectors.

  • CVE-2011-1438May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 allows remote attackers to bypass the Same Origin Policy via vectors involving blobs.

  • CVE-2011-1437May 3, 2011
    risk 0.00cvss epss 0.01

    Multiple integer overflows in Google Chrome before 11.0.696.57 allow remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to float rendering.

  • CVE-2011-1436May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 on Linux does not properly interact with the X Window System, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors.

  • CVE-2011-1435May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not properly implement the tabs permission for extensions, which allows remote attackers to read local files via a crafted extension.

  • CVE-2011-1434May 3, 2011
    risk 0.00cvss epss 0.01

    Google Chrome before 11.0.696.57 does not ensure thread safety during handling of MIME data, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

Page 221 of 227