CVE-2010-1230
Summary
| CVE | CVE-2010-1230 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2010-04-01 22:30:00 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | Google Chrome before 4.1.249.1036 does not have the expected behavior for attempts to delete Web SQL Databases and clear the Strict Transport Security (STS) state, which has unspecified impact and attack vectors. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:L/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Google Chrome Releases: Stable Channel Update | af854a3a-2127-422b-91ae-364da2661108 | googlechromereleases.blogspot.com | Third Party Advisory |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | Third Party Advisory |
| Issue 33445 - chromium - STS design questions around probing what sites a user has been to - Project Hosting on Google Code | af854a3a-2127-422b-91ae-364da2661108 | code.google.com | Vendor Advisory |
| Issue 30801 - chromium - "Clear Browsing Data" dialog is missing an option for HTML5 storage facilities (Local Storage & Web Database) - Project Hosting on Google Code | af854a3a-2127-422b-91ae-364da2661108 | code.google.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.