CVE-2015-1215
- EPSS 0.97%
- Veröffentlicht 09.03.2015 00:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The filters implementation in Skia, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation.
CVE-2015-1214
- EPSS 0.97%
- Veröffentlicht 09.03.2015 00:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the SkAutoSTArray implementation in include/core/SkTemplates.h in the filters implementation in Skia, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified ...
CVE-2015-1213
- EPSS 0.97%
- Veröffentlicht 09.03.2015 00:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The SkBitmap::ReadRawPixels function in core/SkBitmap.cpp in the filters implementation in Skia, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors ...
- EPSS 0.37%
- Veröffentlicht 09.03.2015 00:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
content/renderer/device_sensors/device_orientation_event_pump.cc in Google Chrome before 41.0.2272.76 does not properly restrict access to high-rate gyroscope data, which makes it easier for remote attackers to obtain speech signals from a device's p...
- EPSS 0.37%
- Veröffentlicht 09.03.2015 00:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
content/renderer/device_sensors/device_motion_event_pump.cc in Google Chrome before 41.0.2272.76 does not properly restrict access to high-rate accelerometer data, which makes it easier for remote attackers to capture keystrokes via a crafted web sit...
CVE-2015-1212
- EPSS 0.46%
- Veröffentlicht 06.02.2015 11:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
CVE-2015-1211
- EPSS 0.75%
- Veröffentlicht 06.02.2015 11:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The OriginCanAccessServiceWorkers function in content/browser/service_worker/service_worker_dispatcher_host.cc in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android does not properly restrict the URI sc...
- EPSS 0.61%
- Veröffentlicht 06.02.2015 11:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
The V8ThrowException::createDOMException function in bindings/core/v8/V8ThrowException.cpp in the V8 bindings in Blink, as used in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android, does not properly c...
CVE-2015-1209
- EPSS 1.05%
- Veröffentlicht 06.02.2015 11:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the VisibleSelection::nonBoundaryShadowTreeRootNode function in core/editing/VisibleSelection.cpp in the DOM implementation in Blink, as used in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before...
CVE-2015-1361
- EPSS 0.83%
- Veröffentlicht 27.01.2015 20:04:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
platform/image-decoders/ImageFrame.h in Blink, as used in Google Chrome before 40.0.2214.91, does not initialize a variable that is used in calls to the Skia SkBitmap::setAlphaType function, which might allow remote attackers to cause a denial of ser...