Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-2300

Опубликовано: 15 июн. 2010
Источник: nvd
CVSS2: 10
EPSS Средний

Описание

Use-after-free vulnerability in the Element::normalizeAttributes function in dom/Element.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to handlers for DOM mutation events, aka rdar problem 7948784. NOTE: this might overlap CVE-2010-1759.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
Версия до 5.0.375.70 (исключая)

EPSS

Процентиль: 96%
0.23377
Средний

10 Critical

CVSS2

Дефекты

CWE-416

Связанные уязвимости

ubuntu
больше 15 лет назад

Use-after-free vulnerability in the Element::normalizeAttributes function in dom/Element.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to handlers for DOM mutation events, aka rdar problem 7948784. NOTE: this might overlap CVE-2010-1759.

debian
больше 15 лет назад

Use-after-free vulnerability in the Element::normalizeAttributes funct ...

github
больше 3 лет назад

Use-after-free vulnerability in the Element::normalizeAttributes function in dom/Element.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to handlers for DOM mutation events, aka rdar problem 7948784. NOTE: this might overlap CVE-2010-1759.

EPSS

Процентиль: 96%
0.23377
Средний

10 Critical

CVSS2

Дефекты

CWE-416