← Back

CVE-2009-1442

nvd nist
Published: May 7, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Multiple integer overflows in Skia, as used in Google Chrome 1.x before 1.0.154.64 and 2.x, and possibly Android, might allow remote attackers to execute arbitrary code in the renderer process via a crafted (1) image or (2) canvas.

Affected (22)

Products: Google: Chrome
1 product
Chrome
Configuration A
22 vulnerable
Vulnerable SoftwareAffected Versions
Google
Up to 1.0.154.53
Version 0.2.149.29
Version 0.2.149.30
Version 0.2.152.1
Version 0.2.153.1
Version 0.3.154.0
Version 0.3.154.3
Version 0.4.154.18
Version 0.4.154.22
Version 0.4.154.31
Version 0.4.154.33
Version 1.0.154.36
Version 1.0.154.39
Version 1.0.154.42
Version 1.0.154.43
Version 1.0.154.46
Version 1.0.154.59
Version 2.0.156.1
Version 2.0.157.0
Version 2.0.157.2
Version 2.0.158.0
Version 2.0.159.0

Related CWEs

References (16)

Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.