CVE-2010-4206

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
06/11/2010
Last modified:
31/07/2020

Description

Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted SVG document, related to effects in the application of filters.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* 7.0.517.44 (excluding)
cpe:2.3:a:webkitgtk:webkitgtk:*:*:*:*:*:*:*:* 1.2.6 (excluding)
cpe:2.3:o:fedoraproject:fedora:13:*:*:*:*:*:*:*