Vulnerabilities > Google > Chrome > 5.0.342.3

DATE CVE VULNERABILITY TITLE RISK
2011-03-11 CVE-2011-1413 Multiple Security vulnerability in Google Chrome prior to 10.0.648.127
Google Chrome before 10.0.648.127 on Linux does not properly mitigate an unspecified flaw in an X server, which allows remote attackers to cause a denial of service (application crash) via vectors involving long messages.
network
low complexity
google
5.0
2011-03-11 CVE-2011-1286 Multiple Security vulnerability in Google Chrome
Google V8, as used in Google Chrome before 10.0.648.127, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger incorrect access to memory.
network
low complexity
google
7.5
2011-03-11 CVE-2011-1285 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Google Chrome
The regular-expression functionality in Google Chrome before 10.0.648.127 does not properly implement reentrancy, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.
network
low complexity
google CWE-119
7.5
2011-03-11 CVE-2011-1204 Improper Input Validation vulnerability in Google Chrome
Google Chrome before 10.0.648.127 does not properly handle attributes, which allows remote attackers to cause a denial of service (DOM tree corruption) or possibly have unspecified other impact via a crafted document.
network
google apple CWE-20
6.8
2011-03-11 CVE-2011-1203 Multiple Security vulnerability in Google Chrome
Google Chrome before 10.0.648.127 does not properly handle SVG cursors, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."
network
low complexity
google apple
7.5
2011-03-11 CVE-2011-1202 Information Exposure vulnerability in Google Chrome
The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.
network
low complexity
google xmlsoft CWE-200
4.3
2011-03-11 CVE-2011-1201 Multiple Security vulnerability in Google Chrome
The context implementation in WebKit, as used in Google Chrome before 10.0.648.127, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer."
network
low complexity
google
7.5
2011-03-11 CVE-2011-1200 Incorrect Type Conversion OR Cast vulnerability in Google Chrome
Google Chrome before 10.0.648.127 does not properly perform a cast of an unspecified variable during text rendering, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.
network
google CWE-704
6.8
2011-03-11 CVE-2011-1199 Multiple Security vulnerability in Google Chrome
Google Chrome before 10.0.648.127 does not properly handle DataView objects, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via unknown vectors.
network
low complexity
google
7.5
2011-03-11 CVE-2011-1198 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Google Chrome
The video functionality in Google Chrome before 10.0.648.127 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger use of a malformed "out-of-bounds structure."
network
low complexity
google CWE-119
7.5