CVE-2010-4198: Input Validation
Common Vulnerabilities and Exposures assigned an identifier CVE-2010-4198 to the following vulnerability:
Name: CVE-2010-4198 Status: Candidate URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4198 [Open URL] Assigned: 20101105 Reference: CONFIRM:http://code.google.com/p/chromium/issues/detail?id=55257 Reference: CONFIRM:http://googlechromereleases.blogspot.com/2010/11/stable-channel-update.html
Upstream Bugzilla: https://bugs.webkit.org/showbug.cgi?id=45611 Trac: http://trac.webkit.org/changeset/69801
Google Chrome before 7.0.517.44 does not properly handle large text areas, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted HTML document.
Other sources
WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, does not properly handle large text areas, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted HTML document.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4198?
CVE-2010-4198 is classified as a vulnerability with moderate severity, affecting specific versions of software.
How do I fix CVE-2010-4198?
To fix CVE-2010-4198, update Google Chrome to version 7.0.517.44 or later, or update the affected version of WebKitGTK+.
Which software is affected by CVE-2010-4198?
CVE-2010-4198 affects Google Chrome versions prior to 7.0.517.44, WebKitGTK+ version 1.2.6, and Fedora version 13.
What are the potential risks associated with CVE-2010-4198?
The potential risks of CVE-2010-4198 include exploitation that could lead to unauthorized access or data compromise.
Is CVE-2010-4198 still a concern in 2023?
While CVE-2010-4198 was an issue in the past, it is generally considered less relevant today due to updates and patches.