5
CVSSv2

CVE-2010-4576

Published: 22/12/2010 Updated: 29/07/2020
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

browser/worker_host/message_port_dispatcher.cc in Google Chrome prior to 8.0.552.224 and Chrome OS prior to 8.0.552.343 does not properly handle certain postMessage calls, which allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) via crafted JavaScript code that creates a web worker.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome os

google chrome

Vendor Advisories

Debian Bug report logs - #607843 chromium-browser: CVE-2010-4576 Segfault when dealing with Web Workers and MessageChannels Package: chromium-browser; Maintainer for chromium-browser is Debian Chromium Maintainers <pkg-chromium-maint@listsaliothdebianorg>; Reported by: Jonathan Wiltshire <jmw@debianorg> Date: Wed, ...