CVE-2015-1218
- EPSS 1.07%
- Veröffentlicht 09.03.2015 00:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple use-after-free vulnerabilities in the DOM implementation in Blink, as used in Google Chrome before 41.0.2272.76, allow remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger movement ...
CVE-2015-1217
- EPSS 1.65%
- Veröffentlicht 09.03.2015 00:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The V8LazyEventListener::prepareListenerObject function in bindings/core/v8/V8LazyEventListener.cpp in the V8 bindings in Blink, as used in Google Chrome before 41.0.2272.76, does not properly compile listeners, which allows remote attackers to cause...
CVE-2015-1216
- EPSS 1.07%
- Veröffentlicht 09.03.2015 00:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the V8Window::namedPropertyGetterCustom function in bindings/core/v8/custom/V8WindowCustom.cpp in the V8 bindings in Blink, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of ser...
CVE-2015-1215
- EPSS 0.97%
- Veröffentlicht 09.03.2015 00:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The filters implementation in Skia, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation.
CVE-2015-1214
- EPSS 0.97%
- Veröffentlicht 09.03.2015 00:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the SkAutoSTArray implementation in include/core/SkTemplates.h in the filters implementation in Skia, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified ...
CVE-2015-1213
- EPSS 0.97%
- Veröffentlicht 09.03.2015 00:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The SkBitmap::ReadRawPixels function in core/SkBitmap.cpp in the filters implementation in Skia, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors ...
- EPSS 0.37%
- Veröffentlicht 09.03.2015 00:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
content/renderer/device_sensors/device_orientation_event_pump.cc in Google Chrome before 41.0.2272.76 does not properly restrict access to high-rate gyroscope data, which makes it easier for remote attackers to obtain speech signals from a device's p...
- EPSS 0.37%
- Veröffentlicht 09.03.2015 00:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
content/renderer/device_sensors/device_motion_event_pump.cc in Google Chrome before 41.0.2272.76 does not properly restrict access to high-rate accelerometer data, which makes it easier for remote attackers to capture keystrokes via a crafted web sit...
CVE-2015-1212
- EPSS 0.46%
- Veröffentlicht 06.02.2015 11:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
CVE-2015-1211
- EPSS 0.75%
- Veröffentlicht 06.02.2015 11:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The OriginCanAccessServiceWorkers function in content/browser/service_worker/service_worker_dispatcher_host.cc in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android does not properly restrict the URI sc...