CVE-2010-4577
The CSSParser::parseFontFaceSrc function in WebCore/css/CSSParser.cpp in WebKit, as used in Google Chrome before 8.0.552.224, Chrome OS before 8.0.552.343, webkitgtk before 1.2.6, and other products does not properly parse Cascading Style Sheets (CSS) token sequences, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted local font, related to "Type Confusion."
- Affected products
- Chrome Os, Google Chrome, Red Hat, Webkit, Webkitgtk
- Google Chrome
- < 8.0.552.224
- Webkitgtk
- < 1.2.6
- Google Chrome Os
- < 8.0.552.343
- Fix
- Available
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 2.2% (81th percentile)
- Weakness
- CWE-125, CWE-843
- NVD status
- Modified
- Published
- 2010-12-22
CVE-2010-4577 at NVD
4 known exploits for CVE-2010-4577
Proof-of-concept code and exploit modules indexed by Sploitus