First published: Tue Jun 15 2010(Updated: )
rendering/FixedTableLayout.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an HTML document that has a large colspan attribute within a table.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome (Trace Event) | <5.0.375.70 | |
SUSE Linux | =11.2 | |
SUSE Linux | =11.3 | |
SUSE Linux Enterprise Server | =11-sp1 | |
SUSE Linux Enterprise Desktop | =11-sp1 | |
SUSE Linux Enterprise Server | =10-sp3 | |
SUSE Linux Enterprise Desktop | =10-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2297 has a high severity rating as it can cause a denial of service or arbitrary code execution.
To fix CVE-2010-2297, upgrade to Google Chrome version 5.0.375.70 or later.
CVE-2010-2297 affects versions of Google Chrome before 5.0.375.70 and certain openSUSE and SUSE Linux Enterprise versions.
CVE-2010-2297 can lead to application crashes or potentially allow attackers to execute arbitrary code on the affected system.
Yes, using older versions of Google Chrome or specified SUSE distributions can leave systems vulnerable to CVE-2010-2297.