VendorsGooglechrome25.0.1364.110
Vulnerabilities

Google Chrome 25.0.1364.110

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2013-0912
WebKit in Google Chrome before 25.0.1364.160 allows remote attackers to execute arbitrary code via vectors that leverage "type confusion."
Published 2013-03-11 · Modified
7.5EPSS 0.043
CVE-2013-0910
Google Chrome before 25.0.1364.152 does not properly manage the interaction between the browser process and renderer processes during authorization of the loading of a plug-in, which makes it easier for remote attackers to bypass intended access restrictions via vectors involving a blocked plug-in.
Published 2013-03-04 · Modified
7.5EPSS 0.013
CVE-2013-0911
Directory traversal vulnerability in Google Chrome before 25.0.1364.152 allows remote attackers to have an unspecified impact via vectors related to databases.
Published 2013-03-04 · Modified
7.5EPSS 0.013
CVE-2013-0902
Use-after-free vulnerability in the frame-loader implementation in Google Chrome before 25.0.1364.152 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
Published 2013-03-04 · Modified
7.5EPSS 0.011
CVE-2013-0903
Use-after-free vulnerability in Google Chrome before 25.0.1364.152 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of browser navigation.
Published 2013-03-04 · Modified
7.5EPSS 0.011
CVE-2013-0905
Use-after-free vulnerability in Google Chrome before 25.0.1364.152 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving an SVG animation.
Published 2013-03-04 · Modified
7.5EPSS 0.011
CVE-2013-0906
The IndexedDB implementation in Google Chrome before 25.0.1364.152 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.
Published 2013-03-04 · Modified
7.5EPSS 0.011
CVE-2013-0904
The Web Audio implementation in Google Chrome before 25.0.1364.152 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.
Published 2013-03-04 · Modified
7.5EPSS 0.011
CVE-2013-0907
Race condition in Google Chrome before 25.0.1364.152 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of media threads.
Published 2013-03-04 · Modified
7.5EPSS 0.008
CVE-2013-0908
Google Chrome before 25.0.1364.152 does not properly manage bindings of extension processes, which has unspecified impact and attack vectors.
Published 2013-03-04 · Modified
7.5EPSS 0.008
CVE-2013-0909
The XSS Auditor in Google Chrome before 25.0.1364.152 allows remote attackers to obtain sensitive HTTP Referer information via unspecified vectors.
Published 2013-03-04 · Modified
5.0EPSS 0.009