Page 24 of 345 results (0.019 seconds)

CVSS: 10.0EPSS: 1%CPEs: 70EXPL: 0

12 Dec 2012 — Use-after-free vulnerability in Google Chrome before 23.0.1271.97 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to visibility events. Google Chrome antes de v23.0.1271.97 permite a atacantes remotos provocar una denegación de servicio o posiblemente tener un impacto no especificado a través de vectores relacionados con la visibilidad de eventos. Multiple vulnerabilities have been reported in Chromium and V8, some of which may allow executi... • http://googlechromereleases.blogspot.com/2012/12/stable-channel-update.html • CWE-416: Use After Free •

CVSS: 10.0EPSS: 5%CPEs: 70EXPL: 0

12 Dec 2012 — Google Chrome before 23.0.1271.97 does not properly handle history navigation, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors. Google Chrome antes de v23.0.1271.97 no controla correctamente el historial de navegación, que permite a atacantes remotos ejecutar código arbitrario o causar una denegación de servicio (caída de aplicación) a través de vectores no especificados. Multiple vulnerabilities have been reported in Chromium ... • http://googlechromereleases.blogspot.com/2012/12/stable-channel-update.html • CWE-94: Improper Control of Generation of Code ('Code Injection') •

CVSS: 10.0EPSS: 0%CPEs: 68EXPL: 0

04 Dec 2012 — Google Chrome before 23.0.1271.95 does not properly handle file paths, which has unspecified impact and attack vectors. Google Chrome antes de v23.0.1271.95 no controla correctamente las rutas de archivos, lo que tiene impacto y vectores de ataque no especificados. Multiple vulnerabilities have been reported in Chromium and V8, some of which may allow execution of arbitrary code. Versions less than 29.0.1457.57 are affected. • http://googlechromereleases.blogspot.com/2012/11/stable-channel-update_29.html •

CVSS: 10.0EPSS: 4%CPEs: 68EXPL: 0

04 Dec 2012 — Use-after-free vulnerability in Google Chrome before 23.0.1271.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the Media Source API. vulnerabilidad de uso después de liberación en Google Chrome antes de v23.0.1271.95 permite a atacantes remotos provocar una denegación de servicio o posiblemente tener un impacto no especificado a través de vectores relacionados con la API Media Source. Multiple vulnerabilities have been reported in Chro... • http://googlechromereleases.blogspot.com/2012/11/stable-channel-update_29.html • CWE-416: Use After Free •

CVSS: 9.8EPSS: 12%CPEs: 4EXPL: 1

30 Nov 2012 — Apache Tomcat through 7.0.x allows remote attackers to cause a denial of service (daemon outage) via partial HTTP requests, as demonstrated by Slowloris. Apache Tomcat hasta v7.0.x permite a atacantes remotos provocar una denegación de servicio (parada del demonio) a través de peticiones HTTP parciales, tal y como quedó demostrado por Slowloris. • http://captainholly.wordpress.com/2009/06/19/slowloris-vs-tomcat •

CVSS: 6.5EPSS: 1%CPEs: 64EXPL: 0

28 Nov 2012 — Google Chrome before 23.0.1271.91 allows remote attackers to cause a denial of service (application crash) via a response with chunked transfer coding. Google Chrome anterior a v23.0.1271.91 permite a atacantes remotos provocar una denegación de servicio (caída de la aplicación) a través de una respuesta con "chunked transfer coding" Multiple vulnerabilities have been reported in Chromium and V8, some of which may allow execution of arbitrary code. Versions less than 29.0.1457.57 are affected. • http://googlechromereleases.blogspot.com/2012/11/stable-channel-update.html •

CVSS: 8.8EPSS: 1%CPEs: 64EXPL: 0

28 Nov 2012 — Google Chrome before 23.0.1271.91 does not properly perform a cast of an unspecified variable during handling of the INPUT element, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted HTML document. Google Chrome antes de v23.0.1271.91 no realiza adecuadamente una conversión de una variable específica durante la manipulación del elemento INPUT, lo que permite a atacantes remotos provocar una denegación de servicio o posiblemente otro impacto a travé... • http://googlechromereleases.blogspot.com/2012/11/stable-channel-update.html • CWE-20: Improper Input Validation •

CVSS: 6.5EPSS: 1%CPEs: 64EXPL: 0

28 Nov 2012 — Skia, as used in Google Chrome before 23.0.1271.91, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors. Skia, como se usa en Google Chrome antes de v23.0.1271.91 permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) a través de vectores no especificados Multiple vulnerabilities have been reported in Chromium and V8, some of which may allow execution of arbitrary code. Versions less than 29.0.1457.57 are affected. • http://googlechromereleases.blogspot.com/2012/11/stable-channel-update.html • CWE-125: Out-of-bounds Read •

CVSS: 9.8EPSS: 1%CPEs: 64EXPL: 0

28 Nov 2012 — Use-after-free vulnerability in Google Chrome before 23.0.1271.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to printing. Vulnerabilidad de uso después de liberación en Google Chrome antes de v23.0.1271.91 permite a atacantes remotos provocar una denegación de servicio o posiblemente tener otro impacto no especificado a través de vectores relacionados con la impresión. Multiple vulnerabilities have been reported in Chromium and V8, some... • http://googlechromereleases.blogspot.com/2012/11/stable-channel-update.html • CWE-399: Resource Management Errors •

CVSS: 8.8EPSS: 1%CPEs: 64EXPL: 0

28 Nov 2012 — Use-after-free vulnerability in Google Chrome before 23.0.1271.91 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to SVG filters. Vulnerabilidad de uso después de la liberación en Google Chrome anteriores a 23.0.1271.91, permite a atacantes remotos producir una denegación de servicio (caída de aplicación) o posiblemente tener otro impacto a través de vectores que implican filtros SVG. Multiple vulnerabilities have been reported in Chromium a... • http://googlechromereleases.blogspot.com/2012/11/stable-channel-update.html • CWE-416: Use After Free •