CVE-2014-1746
Publication date 21 May 2014
Last updated 24 July 2024
Ubuntu priority
The InMemoryUrlProtocol::Read function in media/filters/in_memory_url_protocol.cc in Google Chrome before 35.0.1916.114 relies on an insufficiently large integer data type, which allows remote attackers to cause a denial of service (out-of-bounds read) via vectors that trigger use of a large buffer.
Status
Package | Ubuntu Release | Status |
---|---|---|
chromium-browser | 14.04 LTS trusty |
Fixed 36.0.1985.125-0ubuntu1.14.04.0~pkg1029
|
oxide-qt | 14.04 LTS trusty |
Fixed 1.0.4-0ubuntu0.14.04.1
|
References
Related Ubuntu Security Notices (USN)
- USN-2298-1
- Oxide vulnerabilities
- 23 July 2014