Show filters
94 Total Results
Displaying 61-70 of 94
Sort by:
Attacker Value
Unknown

CVE-2015-1219

Disclosure Date: March 09, 2015 (last updated October 05, 2023)
Integer overflow in the SkMallocPixelRef::NewAllocate function in core/SkMallocPixelRef.cpp in Skia, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an attempted allocation of a large amount of memory during WebGL rendering.
0
Attacker Value
Unknown

CVE-2015-1215

Disclosure Date: March 09, 2015 (last updated October 05, 2023)
The filters implementation in Skia, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation.
0
Attacker Value
Unknown

CVE-2015-1214

Disclosure Date: March 09, 2015 (last updated October 05, 2023)
Integer overflow in the SkAutoSTArray implementation in include/core/SkTemplates.h in the filters implementation in Skia, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a reset action with a large count value, leading to an out-of-bounds write operation.
0
Attacker Value
Unknown

CVE-2015-1217

Disclosure Date: March 09, 2015 (last updated October 05, 2023)
The V8LazyEventListener::prepareListenerObject function in bindings/core/v8/V8LazyEventListener.cpp in the V8 bindings in Blink, as used in Google Chrome before 41.0.2272.76, does not properly compile listeners, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."
0
Attacker Value
Unknown

CVE-2015-1229

Disclosure Date: March 09, 2015 (last updated October 05, 2023)
net/http/proxy_client_socket.cc in Google Chrome before 41.0.2272.76 does not properly handle a 407 (aka Proxy Authentication Required) HTTP status code accompanied by a Set-Cookie header, which allows remote proxy servers to conduct cookie-injection attacks via a crafted response.
0
Attacker Value
Unknown

CVE-2015-1228

Disclosure Date: March 09, 2015 (last updated October 05, 2023)
The RenderCounter::updateCounter function in core/rendering/RenderCounter.cpp in Blink, as used in Google Chrome before 41.0.2272.76, does not force a relayout operation and consequently does not initialize memory for a data structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted Cascading Style Sheets (CSS) token sequence.
0
Attacker Value
Unknown

CVE-2015-1216

Disclosure Date: March 09, 2015 (last updated October 05, 2023)
Use-after-free vulnerability in the V8Window::namedPropertyGetterCustom function in bindings/core/v8/custom/V8WindowCustom.cpp in the V8 bindings in Blink, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a frame detachment.
0
Attacker Value
Unknown

CVE-2015-1220

Disclosure Date: March 09, 2015 (last updated October 05, 2023)
Use-after-free vulnerability in the GIFImageReader::parseData function in platform/image-decoders/gif/GIFImageReader.cpp in Blink, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted frame size in a GIF image.
0
Attacker Value
Unknown

CVE-2014-7943

Disclosure Date: January 22, 2015 (last updated October 05, 2023)
Skia, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
0
Attacker Value
Unknown

CVE-2014-7926

Disclosure Date: January 22, 2015 (last updated October 05, 2023)
The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors related to a zero-length quantifier.
0