CVE
- Id
- 43231
- CVE No.
- CVE-2010-0647
- Status
- Candidate
- Description
- WebKit before r53525, as used in Google Chrome before 4.0.249.89, allows remote attackers to execute arbitrary code in the Chrome sandbox via a malformed RUBY element, as demonstrated by a <ruby>><table><rt> sequence.
- Phase
- Assigned (20100218)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
471027 | 43231 | CVE-2010-0647 | CONFIRM:http://code.google.com/p/chromium/issues/detail?id=31692 | View |
471028 | 43231 | CVE-2010-0647 | CONFIRM:http://googlechromereleases.blogspot.com/2010/02/stable-channel-update.html | View |
471029 | 43231 | CVE-2010-0647 | CONFIRM:http://sites.google.com/a/chromium.org/dev/Home/chromium-security/chromium-security-bugs | View |
471030 | 43231 | CVE-2010-0647 | CONFIRM:http://trac.webkit.org/changeset/53525 | View |
471031 | 43231 | CVE-2010-0647 | CONFIRM:https://bugs.webkit.org/show_bug.cgi?id=33266 | View |
471032 | 43231 | CVE-2010-0647 | MANDRIVA:MDVSA-2011:039 | View |
471033 | 43231 | CVE-2010-0647 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2011:039 | View |
471034 | 43231 | CVE-2010-0647 | SUSE:SUSE-SR:2011:002 | View |
471035 | 43231 | CVE-2010-0647 | URL:http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html | View |
471036 | 43231 | CVE-2010-0647 | UBUNTU:USN-1006-1 | View |
471037 | 43231 | CVE-2010-0647 | URL:http://www.ubuntu.com/usn/USN-1006-1 | View |
471038 | 43231 | CVE-2010-0647 | BID:38177 | View |
471039 | 43231 | CVE-2010-0647 | URL:http://www.securityfocus.com/bid/38177 | View |
471040 | 43231 | CVE-2010-0647 | OSVDB:62317 | View |
471041 | 43231 | CVE-2010-0647 | URL:http://www.osvdb.org/62317 | View |
471042 | 43231 | CVE-2010-0647 | OVAL:oval:org.mitre.oval:def:14094 | View |
471043 | 43231 | CVE-2010-0647 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14094 | View |
471044 | 43231 | CVE-2010-0647 | SECTRACK:1023583 | View |
471045 | 43231 | CVE-2010-0647 | URL:http://securitytracker.com/id?1023583 | View |
471046 | 43231 | CVE-2010-0647 | SECUNIA:38545 | View |
471047 | 43231 | CVE-2010-0647 | URL:http://secunia.com/advisories/38545 | View |
471048 | 43231 | CVE-2010-0647 | SECUNIA:41856 | View |
471049 | 43231 | CVE-2010-0647 | URL:http://secunia.com/advisories/41856 | View |
471050 | 43231 | CVE-2010-0647 | SECUNIA:43068 | View |
471051 | 43231 | CVE-2010-0647 | URL:http://secunia.com/advisories/43068 | View |
471052 | 43231 | CVE-2010-0647 | VUPEN:ADV-2010-0361 | View |
471053 | 43231 | CVE-2010-0647 | URL:http://www.vupen.com/english/advisories/2010/0361 | View |
471054 | 43231 | CVE-2010-0647 | VUPEN:ADV-2010-2722 | View |
471055 | 43231 | CVE-2010-0647 | URL:http://www.vupen.com/english/advisories/2010/2722 | View |
471056 | 43231 | CVE-2010-0647 | VUPEN:ADV-2011-0212 | View |
471057 | 43231 | CVE-2010-0647 | URL:http://www.vupen.com/english/advisories/2011/0212 | View |
471058 | 43231 | CVE-2010-0647 | VUPEN:ADV-2011-0552 | View |
471059 | 43231 | CVE-2010-0647 | URL:http://www.vupen.com/english/advisories/2011/0552 | View |
471060 | 43231 | CVE-2010-0647 | XF:googlechrome-ruby-tags-code-exec(56214) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
43013 | JVNDB-2009-004020 | Google Chrome および Apple Safari における重要な情報を取得される脆弱性 | Google Chrome および Apple Safari で使用される WebKit は、スタイルシートダウンロードが誤った MIME タイプを保持し、スタイルシート文書が不正な形式の際、スタイルシートドキュメントがクロスオリジンの読み込みを許可するため、重要な情報を取得される脆弱性が存在します。 | CVE-2010-0651 | 43231 | 4.3 | http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-004020.html | View |