Candidate: CVE-2010-0645 PublicDate: 2010-02-18 18:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0645 http://googlechromereleases.blogspot.com/2010/02/stable-channel-update.html Description: Multiple integer overflows in factory.cc in Google V8 before r3560, as used in Google Chrome before 4.0.249.89, allow remote attackers to execute arbitrary code in the Chrome sandbox via crafted use of JavaScript arrays. Ubuntu-Description: Notes: mdeslaur> fixed in v8 r3560 Bugs: http://code.google.com/p/v8/source/detail?r=3560 http://code.google.com/p/chromium/issues/detail?id=31009 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_chromium-browser: upstream_chromium-browser: needs-triage dapper_chromium-browser: DNE hardy_chromium-browser: DNE intrepid_chromium-browser: DNE jaunty_chromium-browser: DNE karmic_chromium-browser: DNE lucid_chromium-browser: not-affected (5.0.342.9~r43360-0ubuntu2) devel_chromium-browser: not-affected (5.0.375.38~r46659-0ubuntu1)