CVE-2010-0645

Publication date 18 February 2010

Last updated 24 July 2024


Ubuntu priority

Description

Multiple integer overflows in factory.cc in Google V8 before r3560, as used in Google Chrome before 4.0.249.89, allow remote attackers to execute arbitrary code in the Chrome sandbox via crafted use of JavaScript arrays.

Read the notes from the security team

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
chromium-browser 10.04 LTS lucid
Not affected
9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
6.06 LTS dapper Not in release

Notes


mdeslaur

fixed in v8 r3560