CVE-2010-4493
https://notcve.org/view.php?id=CVE-2010-4493
Use-after-free vulnerability in Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service via vectors related to the handling of mouse dragging events. Vulnerabilidad de uso después de liberación en Google Chrome antes v8.0.552.215 permite a atacantes remotos provocar una denegación de servicio a través de vectores relacionados con el manejo de eventos de arrastre de ratón. • http://code.google.com/p/chromium/issues/detail?id=63051 http://googlechromereleases.blogspot.com/2010/12/stable-beta-channel-updates.html http://lists.opensuse.org/opensuse-security-announce/2011-05/msg00005.html http://secunia.com/advisories/42472 http://www.debian.org/security/2011/dsa-2188 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12129 • CWE-416: Use After Free •
CVE-2010-4490
https://notcve.org/view.php?id=CVE-2010-4490
Google Chrome before 8.0.552.215 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via malformed video content that triggers an indexing error. Google Chrome antes de v8.0.552.215 permite a atacantes remotos provocar una denegación de servicio (por caída de aplicación) o posiblemente tener un impacto no especificado a través de un vídeo con formato incorrecto que provoca un error de indexación. • http://code.google.com/p/chromium/issues/detail?id=62127 http://googlechromereleases.blogspot.com/2010/12/stable-beta-channel-updates.html http://secunia.com/advisories/42472 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12284 •
CVE-2010-4487
https://notcve.org/view.php?id=CVE-2010-4487
Incomplete blacklist vulnerability in Google Chrome before 8.0.552.215 on Linux and Mac OS X allows remote attackers to have an unspecified impact via a "dangerous file." Vulnerabilidad de lista negra incompleta en Google Chrome antes de v8.0.552.215 en Linux y Mac OS X permite a atacantes remotos tener un impacto no especificado a través de un "archivo peligroso." • http://code.google.com/p/chromium/issues/detail?id=59817 http://googlechromereleases.blogspot.com/2010/12/stable-beta-channel-updates.html http://secunia.com/advisories/42472 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13423 •
CVE-2010-4489
https://notcve.org/view.php?id=CVE-2010-4489
libvpx, as used in Google Chrome before 8.0.552.215 and possibly other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WebM video. NOTE: this vulnerability exists because of a regression. libvpx, como se utiliza en Google Chrome en versiones anteriores a 8.0.552.215 y posiblemente otros productos, permite a atacantes remotos causar una denegación de servicio (lectura fuera de rango) a través de un vídeo WebM manipulado. NOTA: esta vulnerabilidad existe debido a una regresión. • http://code.google.com/p/chromium/issues/detail?id=61653 http://googlechromereleases.blogspot.com/2010/12/stable-beta-channel-updates.html http://secunia.com/advisories/42472 http://secunia.com/advisories/43728 http://www.ubuntu.com/usn/USN-1087-1 http://www.vupen.com/english/advisories/2011/0662 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11919 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2010-4494 – libxml2: double-free in XPath processing code
https://notcve.org/view.php?id=CVE-2010-4494
Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling. Vulnerabilidad de liberación doble en libxml2 2.7.8 y otras versiones, tal como se utiliza en Google Chrome en versiones anteriores a 8.0.552.215 y otros productos, permite a atacantes remotos provocar una denegación de servicio o posiblemente tener otro impacto no especificado a través de vectores relacionados con el manejo de XPath. • http://code.google.com/p/chromium/issues/detail?id=63444 http://googlechromereleases.blogspot.com/2010/12/stable-beta-channel-updates.html http://lists.apple.com/archives/security-announce/2011//Mar/msg00003.html http://lists.apple.com/archives/security-announce/2011//Mar/msg00004.html http://lists.apple.com/archives/security-announce/2011/Mar/msg00000.html http://lists.apple.com/archives/security-announce/2011/Mar/msg00006.html http://lists.fedoraproject.org/pipermail/package-announce/2011-Ma • CWE-415: Double Free •