Skip to content
High Published: Dec 22, 2010 Modified: Apr 11, 2025

CVE-2010-4574

7.5 CVSS Score High
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P
Export CVE-2010-4574 Data:
Share:
Link copied!

Description

The Pickle::Pickle function in base/pickle.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 on 64-bit Linux platforms does not properly perform pointer arithmetic, which allows remote attackers to bypass message deserialization validation, and cause a denial of service or possibly have unspecified other impact, via invalid pickle data.

CVSS Vector Details

Attack Vector Network
Attack Complexity Low
Confidentiality P
Integrity P
Availability P

Affected Software Configurations

  • a google chrome * * * * * * * *
  • o google chrome_os * * * * * * * *
  • o linux linux_kernel - * * * * * x64 *

Weaknesses (CWE)

  • CWE-502

CVE History Timeline

Dec 22, 2010 15:20 Initial Analysis
Sep 19, 2017 01:31 CVE Modified
Jul 31, 2020 11:18 Modified Analysis
May 14, 2024 02:24 CVE Modified
Nov 21, 2024 01:21 CVE Modified