Google Chrome Os vulnerabilities
65 known vulnerabilities affecting google/chrome_os.
Total CVEs
65
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL28HIGH22MEDIUM14LOW1
Vulnerabilities
Page 4 of 4
CVE-2010-4578HIGHCVSS 7.5fixed in 8.0.552.3432010-12-22
CVE-2010-4578 [HIGH] CVE-2010-4578: Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 do not properly perform cursor han
Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 do not properly perform cursor handling, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to "stale pointers."
nvd
CVE-2010-4577HIGHCVSS 7.5fixed in 8.0.552.3432010-12-22
CVE-2010-4577 [HIGH] CWE-125 CVE-2010-4577: The CSSParser::parseFontFaceSrc function in WebCore/css/CSSParser.cpp in WebKit, as used in Google C
The CSSParser::parseFontFaceSrc function in WebCore/css/CSSParser.cpp in WebKit, as used in Google Chrome before 8.0.552.224, Chrome OS before 8.0.552.343, webkitgtk before 1.2.6, and other products does not properly parse Cascading Style Sheets (CSS) token sequences, which allows remote attackers to cause a denial of service (out-of-bounds read) via a
nvd
CVE-2010-4574HIGHCVSS 7.5fixed in 8.0.552.3432010-12-22
CVE-2010-4574 [HIGH] CWE-502 CVE-2010-4574: The Pickle::Pickle function in base/pickle.cc in Google Chrome before 8.0.552.224 and Chrome OS befo
The Pickle::Pickle function in base/pickle.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 on 64-bit Linux platforms does not properly perform pointer arithmetic, which allows remote attackers to bypass message deserialization validation, and cause a denial of service or possibly have unspecified other impact, via invalid pickle
nvd
CVE-2010-4576MEDIUMCVSS 5.0fixed in 8.0.552.3432010-12-22
CVE-2010-4576 [MEDIUM] CWE-476 CVE-2010-4576: browser/worker_host/message_port_dispatcher.cc in Google Chrome before 8.0.552.224 and Chrome OS bef
browser/worker_host/message_port_dispatcher.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 does not properly handle certain postMessage calls, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted JavaScript code that creates a web worker.
nvd
CVE-2010-4575MEDIUMCVSS 4.3fixed in 8.0.552.3432010-12-22
CVE-2010-4575 [MEDIUM] CWE-20 CVE-2010-4575: The ThemeInstalledInfoBarDelegate::Observe function in browser/extensions/theme_installed_infobar_de
The ThemeInstalledInfoBarDelegate::Observe function in browser/extensions/theme_installed_infobar_delegate.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 does not properly handle incorrect tab interaction by an extension, which allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted
nvd
← Previous4 / 4