CVE-2010-2647
published 2010-07-06CVE-2010-2647: Google Chrome before 5.0.375.99 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an…
PriorityP431critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
2.11%
80.0th percentile
Google Chrome before 5.0.375.99 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an invalid SVG document.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| chrome | < 5.0.375.99 | 5.0.375.99 |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
Webkit: SVG ForeignObject Rendering Layout Vulnerability
vendor_redhat·2010-07-02·CVSS 9.3
CVE-2010-2647 [CRITICAL] Webkit: SVG ForeignObject Rendering Layout Vulnerability
Webkit: SVG ForeignObject Rendering Layout Vulnerability
Google Chrome before 5.0.375.99 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an invalid SVG document.
Statement: This flaw was found to be a duplicate of CVE-2010-1786. Please see https://access.redhat.com/security/cve/CVE-2010-1786 for information about affected products and security errata.
Package: webkitgtk (Red Hat Enterprise Linux 6) - Not affected
GHSA
GHSA-jgpf-ffv9-8mh9: Google Chrome before 5
ghsa_unreviewed·2022-05-13
CVE-2010-2647 [HIGH] CWE-119 GHSA-jgpf-ffv9-8mh9: Google Chrome before 5
Google Chrome before 5.0.375.99 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via an invalid SVG document.
No detection rules found.
No public exploits indexed.
http://code.google.com/p/chromium/issues/detail?id=43488http://googlechromereleases.blogspot.com/2010/07/stable-channel-update.htmlhttp://secunia.com/advisories/41856http://www.mandriva.com/security/advisories?name=MDVSA-2011:039http://www.ubuntu.com/usn/USN-1006-1http://www.vupen.com/english/advisories/2010/2722http://www.vupen.com/english/advisories/2011/0552https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11884http://code.google.com/p/chromium/issues/detail?id=43488http://googlechromereleases.blogspot.com/2010/07/stable-channel-update.htmlhttp://secunia.com/advisories/41856http://www.mandriva.com/security/advisories?name=MDVSA-2011:039http://www.ubuntu.com/usn/USN-1006-1http://www.vupen.com/english/advisories/2010/2722http://www.vupen.com/english/advisories/2011/0552https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11884
2010-07-06
Published