Описание
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted SVG document, related to effects in the application of filters.
Ссылки
- ExploitIssue TrackingMailing ListVendor Advisory
- Release NotesVendor Advisory
- Mailing ListThird Party Advisory
- Broken Link
- Broken Link
- Mailing ListPatchVendor Advisory
- Broken Link
- Not Applicable
- Third Party AdvisoryVDB Entry
- Permissions RequiredThird Party Advisory
- Permissions RequiredThird Party Advisory
- Permissions RequiredVendor Advisory
- Issue TrackingThird Party Advisory
- Third Party Advisory
- ExploitIssue TrackingMailing ListVendor Advisory
- Release NotesVendor Advisory
- Mailing ListThird Party Advisory
- Broken Link
- Broken Link
- Mailing ListPatchVendor Advisory
Уязвимые конфигурации
EPSS
8.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
Связанные уязвимости
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted SVG document, related to effects in the application of filters.
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted SVG document, related to effects in the application of filters.
Array index error in the FEBlend::apply function in WebCore/platform/g ...
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted SVG document, related to effects in the application of filters.
EPSS
8.8 High
CVSS3
6.8 Medium
CVSS2