PT-2010-3888 · Google · Google Chrome

Published

2010-06-15

·

Updated

2020-08-05

·

CVE-2010-2302

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 5.0.375.70
Description A use-after-free issue in WebCore in WebKit allows remote attackers to cause a denial of service or possibly execute arbitrary code via vectors involving remote fonts in conjunction with shadow DOM trees.
Recommendations For versions prior to 5.0.375.70, update to version 5.0.375.70 or later to resolve the issue.

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-2302

Affected Products

Google Chrome