CVE-2014-7906
- EPSS 1.17%
- Veröffentlicht 19.11.2014 11:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the Pepper plugins in Google Chrome before 39.0.2171.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted Flash content that triggers an attempted PepperMediaDev...
- EPSS 0.21%
- Veröffentlicht 19.11.2014 11:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Google Chrome before 39.0.2171.65 on Android does not prevent navigation to a URL in cases where an intent for the URL lacks CATEGORY_BROWSABLE, which allows remote attackers to bypass intended access restrictions via a crafted web site.
CVE-2014-7904
- EPSS 1.27%
- Veröffentlicht 19.11.2014 11:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in Skia, as used in Google Chrome before 39.0.2171.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
CVE-2014-7903
- EPSS 1.51%
- Veröffentlicht 19.11.2014 11:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in OpenJPEG before r2911 in PDFium, as used in Google Chrome before 39.0.2171.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted JPEG image.
CVE-2014-7902
- EPSS 0.89%
- Veröffentlicht 19.11.2014 11:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in PDFium, as used in Google Chrome before 39.0.2171.65, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted PDF document.
CVE-2014-7901
- EPSS 1.38%
- Veröffentlicht 19.11.2014 11:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the opj_t2_read_packet_data function in fxcodec/fx_libopenjpeg/libopenjpeg20/t2.c in OpenJPEG in PDFium, as used in Google Chrome before 39.0.2171.65, allows remote attackers to cause a denial of service or possibly have unspecifi...
CVE-2014-7900
- EPSS 1.38%
- Veröffentlicht 19.11.2014 11:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the CPDF_Parser::IsLinearizedFile function in fpdfapi/fpdf_parser/fpdf_parser_parser.cpp in PDFium, as used in Google Chrome before 39.0.2171.65, allows remote attackers to cause a denial of service or possibly have un...
- EPSS 0.56%
- Veröffentlicht 19.11.2014 11:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Google Chrome before 38.0.2125.101 allows remote attackers to spoof the address bar by placing a blob: substring at the beginning of the URL, followed by the original URI scheme and a long username string.
- EPSS 0.22%
- Veröffentlicht 10.10.2014 01:55:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
core/rendering/compositing/RenderLayerCompositor.cpp in Blink, as used in Google Chrome before 38.0.2125.102 on Android, does not properly handle a certain IFRAME overflow condition, which allows remote attackers to spoof content via a crafted web si...
CVE-2014-7967
- EPSS 0.11%
- Veröffentlicht 08.10.2014 10:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in Google V8 before 3.28.71.15, as used in Google Chrome before 38.0.2125.101, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.