Attackers can exploit these issues to execute arbitrary code in the context of the browser, cause denial-of-service conditions, and write to arbitrary local files in context of an unsuspecting user running the affected application; other attacks are also possible.
Use-after-free vulnerability in the SVG implementation in WebKit, as used in Google Chrome before 22.0.1229.94, allows remote attackers to execute arbitrary code via unspecified vectors.