CVE-2014-3196
- EPSS 0.23%
- Veröffentlicht 08.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
base/memory/shared_memory_win.cc in Google Chrome before 38.0.2125.101 on Windows does not properly implement read-only restrictions on shared memory, which allows attackers to bypass a sandbox protection mechanism via unspecified vectors.
- EPSS 0.31%
- Veröffentlicht 08.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The NavigationScheduler::schedulePageBlock function in core/loader/NavigationScheduler.cpp in Blink, as used in Google Chrome before 38.0.2125.101, does not properly provide substitute data for pages blocked by the XSS auditor, which allows remote at...
- EPSS 0.83%
- Veröffentlicht 08.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Instance::HandleInputEvent function in pdf/instance.cc in the PDFium component in Google Chrome before 38.0.2125.101 interprets a certain -1 value as an index instead of a no-visible-page error code, which allows remote attackers to cause a denia...
- EPSS 0.83%
- Veröffentlicht 08.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The wrap function in bindings/core/v8/custom/V8EventCustom.cpp in the V8 bindings in Blink, as used in Google Chrome before 38.0.2125.101, has an erroneous fallback outcome for wrapper-selection failures, which allows remote attackers to cause a deni...
CVE-2014-3200
- EPSS 1.49%
- Veröffentlicht 08.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in Google Chrome before 38.0.2125.101 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
CVE-2014-3187
- EPSS 0.61%
- Veröffentlicht 08.10.2014 10:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Google Chrome before 37.0.2062.60 and 38.x before 38.0.2125.59 on iOS does not properly restrict processing of (1) facetime:// and (2) facetime-audio:// URLs, which allows remote attackers to obtain video and audio data from a device via a crafted we...
CVE-2014-1568
- EPSS 40.04%
- Veröffentlicht 25.09.2014 17:55:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
Mozilla Network Security Services (NSS) before 3.16.2.1, 3.16.x before 3.16.5, and 3.17.x before 3.17.1, as used in Mozilla Firefox before 32.0.3, Mozilla Firefox ESR 24.x before 24.8.1 and 31.x before 31.1.1, Mozilla Thunderbird before 24.8.1 and 31...
CVE-2014-3178
- EPSS 1.46%
- Veröffentlicht 10.09.2014 10:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in core/dom/Node.cpp in Blink, as used in Google Chrome before 37.0.2062.120, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging improper handling of render-tree i...
CVE-2014-3179
- EPSS 0.51%
- Veröffentlicht 10.09.2014 10:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in Google Chrome before 37.0.2062.120 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
- EPSS 2.03%
- Veröffentlicht 27.08.2014 01:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in Google Chrome before 37.0.2062.94 allow attackers to cause a denial of service or possibly have other impact via unknown vectors, related to the load_truetype_glyph function in truetype/ttgload.c in FreeType an...