First published: Sat Nov 06 2010(Updated: )
WebM libvpx (aka the VP8 Codec SDK) before 0.9.5, as used in Google Chrome before 7.0.517.44, allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via invalid frames.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome (Trace Event) | <7.0.517.44 | |
libvpx | <0.9.5 | |
Red Hat Enterprise Linux Desktop | =6.0 | |
Red Hat Enterprise Linux Server | =6.0 | |
Red Hat Enterprise Linux Workstation | =6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4203 is classified as a vulnerability that can lead to denial of service or potential arbitrary code execution.
To fix CVE-2010-4203, update Google Chrome to version 7.0.517.44 or later and ensure you are using libvpx version 0.9.5 or higher.
CVE-2010-4203 affects Google Chrome versions before 7.0.517.44 and WebM Project libvpx versions before 0.9.5.
CVE-2010-4203 does not directly indicate data breaches but allows for memory corruption that could potentially lead to further exploitation.
CVE-2010-4203 is considered less of a threat today due to the availability of patches and updates for affected software.