Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

211 – 220 of 355 results


CVE-2010-3253

Low priority
Fixed

The implementation of notification permissions in Google Chrome before 6.0.472.53 allows attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-3252

Low priority
Fixed

Use-after-free vulnerability in the Notifications presenter in Google Chrome before 6.0.472.53 allows attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-3249

Low priority
Fixed

Google Chrome before 6.0.472.53 does not properly implement SVG filters, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors, related to a "stale pointer" issue.

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-3248

Medium priority

Some fixes available 3 of 8

Google Chrome before 6.0.472.53 does not properly restrict copying to the clipboard, which has unspecified impact and attack vectors.

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-3246

Low priority
Fixed

Google Chrome before 6.0.472.53 does not properly handle the _blank value for the target attribute of unspecified elements, which allows remote attackers to bypass the pop-up blocker via unknown vectors.

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-3254

Low priority

Some fixes available 6 of 15

The WebSockets implementation in Google Chrome before 6.0.472.53 does not properly handle integer values, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

4 affected packages

chromium-browser, qt4-x11, webkit, webkitgtk

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser Not affected
qt4-x11 Not affected
webkit Not in release
webkitgtk Not affected
Show less packages

CVE-2010-1760

Medium priority

Some fixes available 2 of 11

loader/DocumentThreadableLoader.cpp in the XMLHttpRequest implementation in WebCore in WebKit before r58409 does not properly handle credentials during a cross-origin synchronous request, which has unspecified impact and...

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-1386

Medium priority

Some fixes available 2 of 11

page/Geolocation.cpp in WebCore in WebKit before r56188 and before 1.2.5 does not properly restrict access to the lastPosition function, which has unspecified impact and remote attack vectors, aka rdar problem 7746357.

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2009-4976

Medium priority
Ignored

Cross-site scripting (XSS) vulnerability in webkitpart.cpp in kwebkitpart allows remote attackers to inject arbitrary web script or HTML via a URL associated with a nonexistent domain name, related to a "universal XSS" issue, a...

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2009-4975

Medium priority
Ignored

Cross-site scripting (XSS) vulnerability in webview.cpp in QtDemoBrowser allows remote attackers to inject arbitrary web script or HTML via a URL associated with a nonexistent domain name, related to a "universal XSS" issue, a...

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages