CVE-2015-1279
- EPSS 1.65%
- Veröffentlicht 23.07.2015 00:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the CJBig2_Image::expand function in fxcodec/jbig2/JBig2_Image.cpp in PDFium, as used in Google Chrome before 44.0.2403.89, allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspeci...
CVE-2015-1278
- EPSS 1.09%
- Veröffentlicht 23.07.2015 00:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
content/browser/web_contents/web_contents_impl.cc in Google Chrome before 44.0.2403.89 does not ensure that a PDF document's modal dialog is closed upon navigation to an interstitial page, which allows remote attackers to spoof URLs via a crafted doc...
CVE-2015-1277
- EPSS 2.31%
- Veröffentlicht 23.07.2015 00:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the accessibility implementation in Google Chrome before 44.0.2403.89 allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging lack of certain validity checks for acc...
CVE-2015-1276
- EPSS 2.78%
- Veröffentlicht 23.07.2015 00:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in content/browser/indexed_db/indexed_db_backing_store.cc in the IndexedDB implementation in Google Chrome before 44.0.2403.89 allows remote attackers to cause a denial of service or possibly have unspecified other impact...
CVE-2015-1274
- EPSS 2.81%
- Veröffentlicht 23.07.2015 00:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
Google Chrome before 44.0.2403.89 does not ensure that the auto-open list omits all dangerous file types, which makes it easier for remote attackers to execute arbitrary code by providing a crafted file and leveraging a user's previous "Always open f...
CVE-2015-1273
- EPSS 2.7%
- Veröffentlicht 23.07.2015 00:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in j2k.c in OpenJPEG before r3002, as used in PDFium in Google Chrome before 44.0.2403.89, allows remote attackers to cause a denial of service or possibly have unspecified other impact via invalid JPEG2000 data in a PDF do...
CVE-2015-1272
- EPSS 2.13%
- Veröffentlicht 23.07.2015 00:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the GPU process implementation in Google Chrome before 44.0.2403.89 allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging the continued availability of a GPUChanne...
CVE-2015-1271
- EPSS 2.87%
- Veröffentlicht 23.07.2015 00:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
PDFium, as used in Google Chrome before 44.0.2403.89, does not properly handle certain out-of-memory conditions, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a c...
CVE-2015-1270
- EPSS 1.17%
- Veröffentlicht 23.07.2015 00:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Components for Unicode (ICU), as used in Google Chrome before 44.0.2403.89, mishandles converter names with initial x- substrings, which allows remote attackers to cause a d...
CVE-2015-1243
- EPSS 1.76%
- Veröffentlicht 01.05.2015 10:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver.cpp in the DOM implementation in Blink, as used in Google Chrome before 42.0.2311.135, allows remote attackers to cause a denial of service or poss...