Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-2295
HistoryJun 15, 2010 - 12:00 a.m.

CVE-2010-2295

2010-06-1500:00:00
ubuntu.com
ubuntu.com
12

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.007

Percentile

80.5%

page/EventHandler.cpp in WebCore in WebKit in Google Chrome before
5.0.375.70 does not properly handle a change of the focused frame during
the dispatching of keydown, which allows user-assisted remote attackers to
redirect keystrokes via a crafted HTML document, aka rdar problem 7018610.
NOTE: this might overlap CVE-2010-1422.

Notes

Author Note
mdeslaur webkit is CVE-2010-1422

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.007

Percentile

80.5%