7.5
CVSSv2

CVE-2010-4574

Published: 22/12/2010 Updated: 31/07/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Pickle::Pickle function in base/pickle.cc in Google Chrome prior to 8.0.552.224 and Chrome OS prior to 8.0.552.343 on 64-bit Linux platforms does not properly perform pointer arithmetic, which allows remote malicious users to bypass message deserialization validation, and cause a denial of service or possibly have unspecified other impact, via invalid pickle data.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

google chrome_os

Vendor Advisories

Debian Bug report logs - #607848 chromium-browser: CVE-2010-4574 DoS (crash), invalid pointer arithmetic in picklecc Package: chromium-browser; Maintainer for chromium-browser is Debian Chromium Maintainers <pkg-chromium-maint@listsaliothdebianorg>; Reported by: Jonathan Wiltshire <jmw@debianorg> Date: Wed, 22 De ...