CVE-2010-4206
published 2010-11-06CVE-2010-4206: Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44…
PriorityP338high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
2.52%
83.0th percentile
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted SVG document, related to effects in the application of filters.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fedoraproject | fedora | — | — |
| chrome | < 7.0.517.44 | 7.0.517.44 | |
| webkitgtk | webkitgtk | < 1.2.6 | 1.2.6 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-6jhm-3x88-7j24: Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend
ghsa_unreviewed·2022-05-13
CVE-2010-4206 [HIGH] CWE-787 GHSA-6jhm-3x88-7j24: Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted SVG document, related to effects in the application of filters.
Ubuntu
WebKit vulnerabilities
vendor_ubuntu·2011-08-23
CVE-2010-1824 WebKit vulnerabilities
Title: WebKit vulnerabilities
Summary: Multiple security vulnerabilities were fixed in WebKit.
A large number of security issues were discovered in the WebKit browser and
JavaScript engines. If a user were tricked into viewing a malicious
website, a remote attacker could exploit a variety of issues related to web
browser security, including cross-site scripting attacks, denial of
service attacks, and arbitrary code execution.
Instructions: After a standard system update you need to restart any applications that
use WebKit, such as Epiphany and Midori, to make all the necessary changes.
Red Hat
WebKit: Array index error during processing of an SVG document
vendor_redhat·2010-11-04·CVSS 8.8
CVE-2010-4206 [HIGH] WebKit: Array index error during processing of an SVG document
WebKit: Array index error during processing of an SVG document
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted SVG document, related to effects in the application of filters.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-4198 CVE-2010-4197 CVE-2010-4204 CVE-2010-4206 CVE-2010-3812 CVE-2010-3813 CVE-2010-4577 CVE-2010-3255 CVE-2010-3119 webkitgtk various flaws [fedora-13]
bugzilla·2011-01-04·CVSS 10.0
CVE-2010-4198 [CRITICAL] CVE-2010-4198 CVE-2010-4197 CVE-2010-4204 CVE-2010-4206 CVE-2010-3812 CVE-2010-3813 CVE-2010-4577 CVE-2010-3255 CVE-2010-3119 webkitgtk various flaws [fedora-13]
CVE-2010-4198 CVE-2010-4197 CVE-2010-4204 CVE-2010-4206 CVE-2010-3812 CVE-2010-3813 CVE-2010-4577 CVE-2010-3255 CVE-2010-3119 webkitgtk various flaws [fedora-13]
fedora-13 tracking bug for webkitgtk: see blocks bug list for full details of the security issue(s).
This bug is never intended to be made public, please put any public notes
in the 'blocks' bugs.
[bug automatically created by: add-tracking-bugs]
Discussion:
Adding parent bug CVE-2010-4197
New bodhi update url:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=656118,656115
---
Adding parent bug CVE-2010-4206
New bodhi update url:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=656118,656115,656129
---
Adding parent bug CVE-2010-3812
New bodhi update url:
https://admin.fedoraproject.org/up
Bugzilla
CVE-2010-4206 WebKit: Array index error during processing of an SVG document
bugzilla·2010-11-23·CVSS 8.8
CVE-2010-4206 [HIGH] CVE-2010-4206 WebKit: Array index error during processing of an SVG document
CVE-2010-4206 WebKit: Array index error during processing of an SVG document
Common Vulnerabilities and Exposures assigned an identifier CVE-2010-4206 to
the following vulnerability:
Name: CVE-2010-4206
Status: Candidate
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4206
Assigned: 20101105
Reference: CONFIRM:http://code.google.com/p/chromium/issues/detail?id=60688
Reference: CONFIRM:http://googlechromereleases.blogspot.com/2010/11/stable-channel-update.html
Upstream Bugzilla: https://bugs.webkit.org/show_bug.cgi?id=48371
Trac: http://trac.webkit.org/changeset/70652
Google Chrome before 7.0.517.44 accesses memory at an out-of-bounds
array index during processing of an SVG document, which allows remote
attackers to cause a denial of service or possibly have unspecified
othe
Bugzilla
CVE-2010-1990 firefox/seamonkey: mail application launch when IFRAME element has a mailto: URI in its SRC attribute
bugzilla·2010-06-09·CVSS 5.0
CVE-2010-1990 [MEDIUM] CVE-2010-1990 firefox/seamonkey: mail application launch when IFRAME element has a mailto: URI in its SRC attribute
CVE-2010-1990 firefox/seamonkey: mail application launch when IFRAME element has a mailto: URI in its SRC attribute
Common Vulnerabilities and Exposures assigned an identifier CVE-2010-1990 to
the following vulnerability:
Name: CVE-2010-1990
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1990
Assigned: 20100520
Reference: BUGTRAQ:20100518 DoS vulnerabilities in Firefox, Internet Explorer, Chrome, Opera and other browsers
Reference: URL: http://www.securityfocus.com/archive/1/archive/1/511327/100/0/threaded
Reference: MISC: http://websecurity.com.ua/4206/
Mozilla Firefox 3.6.x, 3.5.x, 3.0.19, and earlier, and SeaMonkey,
executes a mail application in situations where an IFRAME element has
a mailto: URL in its SRC attribute, which allows remote attackers to
cause a denial of
http://code.google.com/p/chromium/issues/detail?id=60688http://googlechromereleases.blogspot.com/2010/11/stable-channel-update.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-January/052906.htmlhttp://secunia.com/advisories/42109http://secunia.com/advisories/43086http://trac.webkit.org/changeset/70652http://www.mandriva.com/security/advisories?name=MDVSA-2011:039http://www.redhat.com/support/errata/RHSA-2011-0177.htmlhttp://www.securityfocus.com/bid/45721http://www.vupen.com/english/advisories/2011/0216http://www.vupen.com/english/advisories/2011/0552https://bugs.webkit.org/show_bug.cgi?id=48371https://bugzilla.redhat.com/show_bug.cgi?id=656129https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11949http://code.google.com/p/chromium/issues/detail?id=60688http://googlechromereleases.blogspot.com/2010/11/stable-channel-update.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2011-January/052906.htmlhttp://secunia.com/advisories/42109http://secunia.com/advisories/43086http://trac.webkit.org/changeset/70652http://www.mandriva.com/security/advisories?name=MDVSA-2011:039http://www.redhat.com/support/errata/RHSA-2011-0177.htmlhttp://www.securityfocus.com/bid/45721http://www.vupen.com/english/advisories/2011/0216http://www.vupen.com/english/advisories/2011/0552https://bugs.webkit.org/show_bug.cgi?id=48371https://bugzilla.redhat.com/show_bug.cgi?id=656129https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11949
2010-11-06
Published