Show filters
85 Total Results
Displaying 71-80 of 85
Sort by:
Attacker Value
Unknown

CVE-2010-1815

Disclosure Date: September 09, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving scrollbars.
0
Attacker Value
Unknown

CVE-2010-1812

Disclosure Date: September 09, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving selections.
0
Attacker Value
Unknown

CVE-2010-3259

Disclosure Date: September 07, 2010 (last updated October 04, 2023)
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, does not properly restrict read access to images derived from CANVAS elements, which allows remote attackers to bypass the Same Origin Policy and obtain potentially sensitive image data via a crafted web site.
0
Attacker Value
Unknown

CVE-2010-3257

Disclosure Date: September 07, 2010 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving element focus.
0
Attacker Value
Unknown

CVE-2010-3116

Disclosure Date: August 24, 2010 (last updated October 04, 2023)
Multiple use-after-free vulnerabilities in WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 5.0.375.127, and webkitgtk before 1.2.6, allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to improper handling of MIME types by plug-ins.
0
Attacker Value
Unknown

CVE-2010-2808

Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted Adobe Type 1 Mac Font File (aka LWFN) font.
0
Attacker Value
Unknown

CVE-2010-2807

Disclosure Date: August 19, 2010 (last updated October 04, 2023)
FreeType before 2.4.2 uses incorrect integer data types during bounds checking, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
0
Attacker Value
Unknown

CVE-2010-2805

Disclosure Date: August 19, 2010 (last updated October 04, 2023)
The FT_Stream_EnterFrame function in base/ftstream.c in FreeType before 2.4.2 does not properly validate certain position values, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.
0
Attacker Value
Unknown

CVE-2010-2806

Disclosure Date: August 19, 2010 (last updated October 04, 2023)
Array index error in the t42_parse_sfnts function in type42/t42parse.c in FreeType before 2.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via negative size values for certain strings in FontType42 font files, leading to a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2010-1205

Disclosure Date: June 30, 2010 (last updated October 04, 2023)
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.