Page 264 of 3370 results (0.011 seconds)

CVSS: 10.0EPSS: 0%CPEs: 116EXPL: 0

24 Jan 2013 — Google Chrome before 24.0.1312.56 does not properly handle %00 characters in pathnames, which has unspecified impact and attack vectors. Google Chrome anterior a v24.0.1312.56 no maneja correctamente caracteres %00 en nombres de ruta, lo que tiene un impacto no especificado y vectores de ataque. Multiple vulnerabilities have been reported in Chromium and V8, some of which may allow execution of arbitrary code. Versions less than 29.0.1457.57 are affected. • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update_22.html •

CVSS: 10.0EPSS: 0%CPEs: 116EXPL: 0

24 Jan 2013 — Google Chrome before 24.0.1312.56 does not validate URLs during the opening of new windows, which has unspecified impact and remote attack vectors. Google Chrome anterior a v24.0.1312.56 no valida URLs durante la apertura de nuevas ventanas, lo que tiene un impacto no especificado y vectores de ataque. Multiple vulnerabilities have been reported in Chromium and V8, some of which may allow execution of arbitrary code. Versions less than 29.0.1457.57 are affected. • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update_22.html •

CVSS: 8.8EPSS: 0%CPEs: 126EXPL: 0

24 Jan 2013 — content/renderer/media/webrtc_audio_renderer.cc in Google Chrome before 24.0.1312.56 on Mac OS X does not use an appropriate buffer size for the 96 kHz sampling rate, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a web site that provides WebRTC audio. content/renderer/media/webrtc_audio_renderer.cc en Google Chrome anterior a v24.0.1312.56 en Mac OS X no utiliza apropiadamente el tamaño de búfer para los 96k... • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update_22.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 8.8EPSS: 0%CPEs: 116EXPL: 0

24 Jan 2013 — Use-after-free vulnerability in Google Chrome before 24.0.1312.56 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of fonts in CANVAS elements. Vulnerabilidad de uso después de la liberación en Google Chrome antes de v24.0.1312.56 que permite a atacantes remotos provocar una denegación de servicio o posiblemente tener un impacto no especificado a través de vectores relacionados con el manejador de fuentes en elemetos CANVAS Mu... • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update_22.html • CWE-399: Resource Management Errors •

CVSS: 9.8EPSS: 0%CPEs: 116EXPL: 0

24 Jan 2013 — Array index error in the content-blocking functionality in Google Chrome before 24.0.1312.56 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors. Errores índice de array en la funcionalidad de bloqueo de contenido de Google Chrome antes v24.0.1312.56 que permite a atacantes remotos provocar una denegación de servicio o posiblemente tener un impacto no especificado a través de vectores desconocidos. Multiple vulnerabilities have been reported in ... • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update_22.html • CWE-20: Improper Input Validation •

CVSS: 8.8EPSS: 0%CPEs: 123EXPL: 0

15 Jan 2013 — Use-after-free vulnerability in Google Chrome before 24.0.1312.52 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to SVG layout. Vulnerabilidad después de liberación en Google Chrome anterior a v24.0.1312.52 que permite a atacantes remotos causar una denegación de servicios o posiblemente tener otro impacto sin especificar a través de vectores relacionados con la capa SVG. Multiple vulnerabilities have been reported in Chromium and V8, some ... • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update.html • CWE-416: Use After Free •

CVSS: 6.5EPSS: 0%CPEs: 114EXPL: 0

15 Jan 2013 — Unspecified vulnerability in the Geolocation implementation in Google Chrome before 24.0.1312.52 allows remote attackers to cause a denial of service (application crash) via unknown vectors. Una vulnerabilidad no especificada en la aplicación de geolocalización de Google Chrome antes de v24.0.1312.52 permite a atacantes remotos provocar una denegación de servicio (por caída de la aplicación) a través de vectores desconocidos. Multiple vulnerabilities have been reported in Chromium and V8, some of which may ... • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update.html •

CVSS: 8.8EPSS: 0%CPEs: 123EXPL: 0

15 Jan 2013 — Integer overflow in the audio IPC layer in Google Chrome before 24.0.1312.52 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors. Desbordamiento de entero en la capa de audio IPC en Google Chrome anterior a v24.0.1312.52 permite a atacantes remotos generar una denegación de servicio o posiblemente tener otro impacto no especificado mediante vectores desconocidos. Multiple vulnerabilities have been reported in Chromium and V8, some of which may a... • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update.html • CWE-189: Numeric Errors •

CVSS: 6.5EPSS: 0%CPEs: 114EXPL: 0

15 Jan 2013 — Google Chrome before 24.0.1312.52 allows remote attackers to cause a denial of service (out-of-bounds read) via vectors involving glyphs. Google Chrome antes de v24.0.1312.52 permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) a través de vectores que involucran glifos. Multiple vulnerabilities have been reported in Chromium and V8, some of which may allow execution of arbitrary code. Versions less than 29.0.1457.57 are affected. • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVSS: 9.8EPSS: 0%CPEs: 114EXPL: 0

15 Jan 2013 — Use-after-free vulnerability in Google Chrome before 24.0.1312.52 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving seek operations on video data. Vulnerabilidad de uso después de la liberación en Google Chrome anterior a v24.0.1312.52, permite a atacantes remotos producir una denegación de servicio (caída de aplicación) o tener otro impacto no especificado por medio de vectores que comprenden operaciones de búsqueda en datos de video. Multi... • http://googlechromereleases.blogspot.com/2013/01/stable-channel-update.html • CWE-399: Resource Management Errors •