Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

301 – 310 of 355 results


CVE-2010-0661

Medium priority
Ignored

WebCore/bindings/v8/custom/V8DOMWindowCustom.cpp in WebKit before r52401, as used in Google Chrome before 4.0.249.78, allows remote attackers to bypass the Same Origin Policy via vectors involving the window.open method.

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-0659

Medium priority
Ignored

The image decoder in WebKit before r52833, as used in Google Chrome before 4.0.249.78, does not properly handle a failure of memory allocation, which allows remote attackers to execute arbitrary code in the Chrome sandbox via a...

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-0656

Medium priority

Some fixes available 1 of 8

WebKit before r51295, as used in Google Chrome before 4.0.249.78, presents a directory-listing page in response to an XMLHttpRequest for a file:/// URL that corresponds to a directory, which allows attackers to obtain sensitive...

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-0651

Medium priority

Some fixes available 1 of 8

WebKit before r52784, as used in Google Chrome before 4.0.249.78 and Apple Safari before 4.0.5, permits cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the...

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-0650

Medium priority

Some fixes available 1 of 8

WebKit, as used in Google Chrome before 4.0.249.78 and Apple Safari, allows remote attackers to bypass intended restrictions on popup windows via crafted use of a mouse click event.

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-0647

Medium priority

Some fixes available 1 of 8

WebKit before r53525, as used in Google Chrome before 4.0.249.89, allows remote attackers to execute arbitrary code in the Chrome sandbox via a malformed RUBY element, as demonstrated by a <ruby>><table><rt> sequence.

3 affected packages

chromium-browser, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
chromium-browser
qt4-x11
webkit
Show less packages

CVE-2010-0314

Low priority

Some fixes available 1 of 8

Apple Safari allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL in the HREF attribute of a stylesheet LINK element, and then reading...

2 affected packages

qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qt4-x11
webkit
Show less packages

CVE-2009-2841

Medium priority

Some fixes available 1 of 7

The HTMLMediaElement::loadResource function in html/HTMLMediaElement.cpp in WebCore in WebKit before r49480, as used in Apple Safari before 4.0.4 on Mac OS X, does not perform the expected callbacks for HTML 5 media elements that...

2 affected packages

qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qt4-x11
webkit
Show less packages

CVE-2009-2816

Medium priority
Ignored

The implementation of Cross-Origin Resource Sharing (CORS) in WebKit, as used in Apple Safari before 4.0.4 and Google Chrome before 3.0.195.33, includes certain custom HTTP headers in the OPTIONS request during cross-origin...

2 affected packages

qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
qt4-x11
webkit
Show less packages

CVE-2009-3933

Low priority
Ignored

WebKit before r50173, as used in Google Chrome before 3.0.195.32, allows remote attackers to cause a denial of service (CPU consumption) via a web page that calls the JavaScript setInterval method, which triggers...

4 affected packages

kde4libs, kdelibs, qt4-x11, webkit

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
kde4libs
kdelibs
qt4-x11
webkit
Show less packages