CVE-2015-6763
Google Chrome - open-vcdiff Out-of-Bounds Read in Browser Process Integer Overflow
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
1Exploited in Wild
-Decision
Descriptions
Multiple unspecified vulnerabilities in Google Chrome before 46.0.2490.71 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
Múltiples vulnerabilidades no especificadas en Google Chrome en versiones anteriores a 46.0.2490.71 permite a atacantes provocar una denegación de servicio o posiblemente tener otro impacto a través de vectores desconocidos.
There is an integer overflow issue in sanity checking section lengths when parsing the vcdiff format (used in SDCH content encoding). This results in the parser parsing outside of sane memory bounds when parsing the contents of a vcdiff windowThere's an integer overflow issue in sanity checking section lengths when parsing the vcdiff format (used in SDCH content encoding). This results in the parser parsing outside of sane memory bounds when parsing the contents of a vcdiff window.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-08-31 CVE Reserved
- 2015-10-15 CVE Published
- 2024-08-06 CVE Updated
- 2024-08-06 First Exploit
- 2024-11-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (24)
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/38763 | 2024-08-06 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://rhn.redhat.com/errata/RHSA-2015-1912.html | 2023-11-07 | |
http://www.debian.org/security/2015/dsa-3376 | 2023-11-07 | |
http://www.ubuntu.com/usn/USN-2770-1 | 2023-11-07 | |
http://www.ubuntu.com/usn/USN-2770-2 | 2023-11-07 | |
https://security.gentoo.org/glsa/201603-09 | 2023-11-07 | |
https://access.redhat.com/security/cve/CVE-2015-6763 | 2015-10-15 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1271559 | 2015-10-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Google Search vendor "Google" | Chrome Search vendor "Google" for product "Chrome" | <= 45.0.2454.101 Search vendor "Google" for product "Chrome" and version " <= 45.0.2454.101" | - |
Affected
|