Use-after-free vulnerability in the Element::normalizeAttributes function in dom/Element.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to handlers for DOM mutation events, aka rdar problem 7948784. NOTE: this might overlap CVE-2010-1759.
View Full Alert
Related Posts
CVE-2010-3412 (chrome)Race condition in the console implementation in Google Chrome before 6.0.472.59 has unspecified impact and attack vectors. View Full Alert
CVE-2010-2108 (chrome)Unspecified vulnerability in Google Chrome before 5.0.375.55 allows remote attackers to bypass the whitelist-mode plugin blocker via unknown vectors. View Full Alert
CVE-2010-2903 (chrome)Google Chrome before 5.0.375.125 performs unexpected truncation and improper eliding of hostnames, which has unspecified impact and remote attack vectors. View Full Alert