Skip to main content

Vendor/product archive

google / chrome CVEs

Beta · best-effort

5,454 CVEs tagged to google / chrome438 Critical, 2,709 High, 2,239 Medium, 68 Low, 0 Unrated.

CVE-2011-0475

Published Jan 14, 2011

Use-after-free vulnerability in Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 allows remote attackers to cause a denial of service or possibly have unspecified…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-0473

Published Jan 14, 2011

Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle Cascading Style Sheets (CSS) token sequences in conjunction with CANVAS elements, which al…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-0472

Published Jan 14, 2011

Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle the printing of PDF documents, which allows user-assisted remote attackers to cause a deni…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-0471

Published Jan 14, 2011

The node-iteration implementation in Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 does not properly handle pointers, which allows remote attackers to cause a…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2011-0470

Published Jan 14, 2011

Google Chrome before 8.0.552.237 and Chrome OS before 8.0.552.344 do not properly handle extensions notification, which allows remote attackers to cause a denial of service (appli…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4576

Published Dec 22, 2010

browser/worker_host/message_port_dispatcher.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 does not properly handle certain postMessage calls, which allow…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4575

Published Dec 22, 2010

The ThemeInstalledInfoBarDelegate::Observe function in browser/extensions/theme_installed_infobar_delegate.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4493

Published Dec 7, 2010

Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service via vectors related to the handling of mouse dragging events.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4492

Published Dec 7, 2010

Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involvi…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-4491

Published Dec 7, 2010

Google Chrome before 8.0.552.215 does not properly restrict privileged extensions, which allows remote attackers to cause a denial of service (memory corruption) via a crafted ext…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4490

Published Dec 7, 2010

Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via malformed video content tha…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4489

Published Dec 7, 2010

libvpx, as used in Google Chrome before 8.0.552.215 and possibly other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WebM video…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4488

Published Dec 7, 2010

Google Chrome before 8.0.552.215 does not properly handle HTTP proxy authentication, which allows remote attackers to cause a denial of service (application crash) via unspecified…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4487

Published Dec 7, 2010

Incomplete blacklist vulnerability in Google Chrome before 8.0.552.215 on Linux and Mac OS X allows remote attackers to have an unspecified impact via a "dangerous file."

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-4486

Published Dec 7, 2010

Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-4485

Published Dec 7, 2010

Google Chrome before 8.0.552.215 does not properly restrict the generation of file dialogs, which allows remote attackers to cause a denial of service (reduced usability and possi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4484

Published Dec 7, 2010

Google Chrome before 8.0.552.215 does not properly handle HTML5 databases, which allows attackers to cause a denial of service (application crash) via unspecified vectors.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4483

Published Dec 7, 2010

Google Chrome before 8.0.552.215 does not properly restrict read access to videos derived from CANVAS elements, which allows remote attackers to bypass the Same Origin Policy and…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4482

Published Dec 7, 2010

Unspecified vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to bypass the pop-up blocker via unknown vectors.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-4008

Published Nov 17, 2010

libxml2 before 2.7.8, as used in Google Chrome before 7.0.517.44, Apple Safari 5.0.2 and earlier, and other products, reads from invalid memory locations during processing of malf…

CVSS 4.3 · Medium
Showing 5,251-5,275 of 5,454 CVEsPage 211 of 219