CVE-2010-3113
webkit: memory corruption when handling SVG documents
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Google Chrome before 5.0.375.127, and webkitgtk before 1.2.5, does not properly handle SVG documents, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors related to state changes when using DeleteButtonController.
Google Chrome anterior a v5.0.375.127 no maneja correctamente los documentos SVG, lo que podría permitir a atacantes remotos provocar una denegación de servicio (corrupción de memoria) o posiblemente tenga otros impactos sin especificar a través de vectores desconocidos
Multiple cross-site scripting, denial of service and arbitrary code execution security flaws were discovered in webkit. The updated packages have been upgraded to the latest version to correct these issues.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2010-08-24 CVE Reserved
- 2010-08-24 CVE Published
- 2024-08-07 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (16)
URL | Tag | Source |
---|---|---|
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=628032 | Issue Tracking | |
http://secunia.com/advisories/41856 | Third Party Advisory | |
http://secunia.com/advisories/43086 | Third Party Advisory | |
http://www.securityfocus.com/bid/44199 | Third Party Advisory | |
http://www.vupen.com/english/advisories/2010/2722 | Third Party Advisory | |
http://www.vupen.com/english/advisories/2011/0216 | Third Party Advisory | |
http://www.vupen.com/english/advisories/2011/0552 | Third Party Advisory | |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11901 | Signature |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://code.google.com/p/chromium/issues/detail?id=49596 | 2020-08-04 | |
http://trac.webkit.org/changeset/63865 | 2020-08-04 |
URL | Date | SRC |
---|---|---|
http://googlechromereleases.blogspot.com/2010/08/stable-channel-update_19.html | 2020-08-04 | |
http://www.mandriva.com/security/advisories?name=MDVSA-2011:039 | 2020-08-04 | |
http://www.redhat.com/support/errata/RHSA-2011-0177.html | 2020-08-04 | |
http://www.ubuntu.com/usn/USN-1006-1 | 2020-08-04 | |
https://access.redhat.com/security/cve/CVE-2010-3113 | 2011-01-25 | |
https://bugzilla.redhat.com/show_bug.cgi?id=628032 | 2011-01-25 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Google Search vendor "Google" | Chrome Search vendor "Google" for product "Chrome" | < 5.0.375.127 Search vendor "Google" for product "Chrome" and version " < 5.0.375.127" | - |
Affected
| ||||||
Webkitgtk Search vendor "Webkitgtk" | Webkitgtk Search vendor "Webkitgtk" for product "Webkitgtk" | < 1.2.5 Search vendor "Webkitgtk" for product "Webkitgtk" and version " < 1.2.5" | - |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 9.10 Search vendor "Canonical" for product "Ubuntu Linux" and version "9.10" | - |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 10.04 Search vendor "Canonical" for product "Ubuntu Linux" and version "10.04" | - |
Affected
| ||||||
Canonical Search vendor "Canonical" | Ubuntu Linux Search vendor "Canonical" for product "Ubuntu Linux" | 10.10 Search vendor "Canonical" for product "Ubuntu Linux" and version "10.10" | - |
Affected
|