Show filters
26 Total Results
Displaying 1-10 of 26
Sort by:
Attacker Value
Unknown
CVE-2014-1701
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
The GenerateFunction function in bindings/scripts/code_generator_v8.pm in Blink, as used in Google Chrome before 33.0.1750.149, does not implement a certain cross-origin restriction for the EventTarget::dispatchEvent function, which allows remote attackers to conduct Universal XSS (UXSS) attacks via vectors involving events.
0
Attacker Value
Unknown
CVE-2014-1703
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
Use-after-free vulnerability in the WebSocketDispatcherHost::SendOrDrop function in content/browser/renderer_host/websocket_dispatcher_host.cc in the Web Sockets implementation in Google Chrome before 33.0.1750.149 might allow remote attackers to bypass the sandbox protection mechanism by leveraging an incorrect deletion in a certain failure case.
0
Attacker Value
Unknown
CVE-2014-1704
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
Multiple unspecified vulnerabilities in Google V8 before 3.23.17.18, as used in Google Chrome before 33.0.1750.149, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
0
Attacker Value
Unknown
CVE-2014-1700
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
Use-after-free vulnerability in modules/speech/SpeechSynthesis.cpp in Blink, as used in Google Chrome before 33.0.1750.149, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging improper handling of a certain utterance data structure.
0
Attacker Value
Unknown
CVE-2014-1702
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
Use-after-free vulnerability in the DatabaseThread::cleanupDatabaseThread function in modules/webdatabase/DatabaseThread.cpp in the web database implementation in Blink, as used in Google Chrome before 33.0.1750.149, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging improper handling of scheduled tasks during shutdown of a thread.
0
Attacker Value
Unknown
CVE-2014-1710
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
The AsyncPixelTransfersCompletedQuery::End function in gpu/command_buffer/service/query_manager.cc in Google Chrome, as used in Google Chrome OS before 33.0.1750.152, does not check whether a certain position is within the bounds of a shared-memory segment, which allows remote attackers to cause a denial of service (GPU command-buffer memory corruption) or possibly have unspecified other impact via unknown vectors.
0
Attacker Value
Unknown
CVE-2014-1706
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
crosh in Google Chrome OS before 33.0.1750.152 allows attackers to inject commands via unspecified vectors.
0
Attacker Value
Unknown
CVE-2014-1711
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
The GPU driver in the kernel in Google Chrome OS before 33.0.1750.152 allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via unknown vectors.
0
Attacker Value
Unknown
CVE-2014-1708
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
The boot implementation in Google Chrome OS before 33.0.1750.152 does not properly consider file persistence, which allows remote attackers to execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown
CVE-2014-1707
Disclosure Date: March 16, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in CrosDisks in Google Chrome OS before 33.0.1750.152 has unspecified impact and attack vectors.
0