Page 565 of 3369 results (0.019 seconds)

CVSS: 6.8EPSS: 1%CPEs: 1EXPL: 1

Google Chrome before 18.0.1025.151 allows remote attackers to bypass the Same Origin Policy via vectors related to pop-up windows. Google Chrome antes de v18.0.1025.151 permite a atacantes remotos saltarse la política de mismo origen a través de vectores relacionados con las ventanas emergentes. • http://code.google.com/p/chromium/issues/detail?id=118467 http://googlechromereleases.blogspot.com/2012/04/stable-and-beta-channel-updates.html http://osvdb.org/81042 http://secunia.com/advisories/48732 http://secunia.com/advisories/48749 http://security.gentoo.org/glsa/glsa-201204-03.xml http://www.securityfocus.com/bid/52913 http://www.securitytracker.com/id?1026892 https://exchange.xforce.ibmcloud.com/vulnerabilities/74632 https://oval.cisecurity.org/repository/search/definition/oval&# • CWE-346: Origin Validation Error •

CVSS: 6.8EPSS: 36%CPEs: 4EXPL: 0

Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 18.0.1025.151 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to run-in boxes. Una vulnerabilidad de uso después de liberación en la implementación de las hojas de estilo en casacada (CSS) en Google Chrome antes de v18.0.1025.151 permite a atacantes remotos causar una denegación de servicio o posiblemente tener un impacto no especificado a través de vectores relacionados con las cajas de ejecución. • http://code.google.com/p/chromium/issues/detail?id=117698 http://googlechromereleases.blogspot.com/2012/04/stable-and-beta-channel-updates.html http://lists.apple.com/archives/security-announce/2012/Jul/msg00000.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00001.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html http://osvdb.org/81038 http://secunia.com/advisories/48732 http://secunia.com/advisories/48749 http://security.gentoo.org/glsa& • CWE-416: Use After Free •

CVSS: 7.5EPSS: 0%CPEs: 4EXPL: 1

Use-after-free vulnerability in the HTMLMediaElement implementation in Google Chrome before 18.0.1025.151 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors. Una vulnerabilidad de uso después de liberación en la implementación de HTMLMediaElement en Google Chrome antes de v18.0.1025.151 permite a atacantes remotos causar una denegación de servicio o posiblemente tener un impacto no especificado This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Apple Safari Webkit. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the library's implementation of a HTMLMedia element. After a source element is created, an attacker can catch the beforeLoad event before the element is used, and delete the element. The pointer to the source element will then be referenced causing a use-after-free condition, which can lead to code execution under the context of the application. • http://code.google.com/p/chromium/issues/detail?id=118273 http://googlechromereleases.blogspot.com/2012/04/stable-and-beta-channel-updates.html http://lists.apple.com/archives/security-announce/2012/Jul/msg00000.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00001.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html http://osvdb.org/81041 http://secunia.com/advisories/48732 http://secunia.com/advisories/48749 http://security.gentoo.org/glsa& • CWE-416: Use After Free •

CVSS: 6.8EPSS: 1%CPEs: 4EXPL: 1

Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 18.0.1025.151 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to line boxes. Una vulnerabilidad de uso después de liberación en la implementación de las hojas dee stilo en cascada (CSS) en Google Chrome antes de v18.0.1025.151 permite a atacantes remotos causar una denegación de servicio o posiblemente tener un impacto no especificado a través de vectores relacionados con cajas de linea. • http://code.google.com/p/chromium/issues/detail?id=117728 http://googlechromereleases.blogspot.com/2012/04/stable-and-beta-channel-updates.html http://lists.apple.com/archives/security-announce/2012/Jul/msg00000.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00001.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html http://osvdb.org/81039 http://secunia.com/advisories/48732 http://secunia.com/advisories/48749 http://security.gentoo.org/glsa& • CWE-416: Use After Free •

CVSS: 6.8EPSS: 0%CPEs: 4EXPL: 1

Use-after-free vulnerability in Google Chrome before 18.0.1025.151 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of media. Una vulnerabilidad de uso después de liberación en Google Chrome antes de v18.0.1025.151 permite a atacantes remotos causar una denegación de servicio o posiblemente tener un impacto no especificado a través de vectores relacionados con la gestión de medios. • http://code.google.com/p/chromium/issues/detail?id=119281 http://googlechromereleases.blogspot.com/2012/04/stable-and-beta-channel-updates.html http://lists.apple.com/archives/security-announce/2012/Jul/msg00000.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00001.html http://lists.apple.com/archives/security-announce/2012/Sep/msg00003.html http://secunia.com/advisories/48732 http://secunia.com/advisories/48749 http://security.gentoo.org/glsa/glsa-201204-03.xml http:& • CWE-416: Use After Free •