CVE-2015-1245
chromium-browser: Use-after-free in PDFium
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Use-after-free vulnerability in the OpenPDFInReaderView::Update function in browser/ui/views/location_bar/open_pdf_in_reader_view.cc in Google Chrome before 41.0.2272.76 might allow user-assisted remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact by triggering interaction with a PDFium "Open PDF in Reader" button that has an invalid tab association.
Vulnerabilidad de uso después de liberación en la función OpenPDFInReaderView::Update en browser/ui/views/location_bar/open_pdf_in_reader_view.cc en Google Chrome anterior a 41.0.2272.76 podría permitir a atacantes remotos asistidos por usuario causar una denegación de servicio (corrupción de memoria dinámica) o posiblemente tener otro impacto no especificado mediante la provocación de la interacción con un botón de ' PDF abierto en Reader' de PDFium que tiene una asociación de pestaña inválida.
Chromium is an open-source web browser, powered by WebKit. Several flaws were found in the processing of malformed web content. A web page containing malicious content could cause Chromium to crash or, potentially, execute arbitrary code with the privileges of the user running Chromium. All Chromium users should upgrade to these updated packages, which contain Chromium version 42.0.2311.90, which corrects these issues. After installing the update, Chromium must be restarted for the changes to take effect.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-01-21 CVE Reserved
- 2015-04-17 CVE Published
- 2024-08-06 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-416: Use After Free
CAPEC
References (11)
URL | Tag | Source |
---|---|---|
http://googlechromereleases.blogspot.com/2015/04/stable-channel-update_14.html | X_refsource_confirm | |
http://www.securitytracker.com/id/1032209 | Vdb Entry | |
https://code.google.com/p/chromium/issues/detail?id=444957 | X_refsource_confirm | |
https://codereview.chromium.org/831283002 | X_refsource_confirm |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://lists.opensuse.org/opensuse-updates/2015-04/msg00040.html | 2023-11-07 | |
http://lists.opensuse.org/opensuse-updates/2015-11/msg00024.html | 2023-11-07 | |
http://rhn.redhat.com/errata/RHSA-2015-0816.html | 2023-11-07 | |
http://www.debian.org/security/2015/dsa-3238 | 2023-11-07 | |
https://security.gentoo.org/glsa/201506-04 | 2023-11-07 | |
https://access.redhat.com/security/cve/CVE-2015-1245 | 2015-04-16 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1211927 | 2015-04-16 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Google Search vendor "Google" | Chrome Search vendor "Google" for product "Chrome" | <= 41.0.2272.74 Search vendor "Google" for product "Chrome" and version " <= 41.0.2272.74" | - |
Affected
| ||||||
Debian Search vendor "Debian" | Debian Linux Search vendor "Debian" for product "Debian Linux" | 7.0 Search vendor "Debian" for product "Debian Linux" and version "7.0" | - |
Affected
|