CVE-2014-1746
Publication date 21 May 2014
Last updated 24 July 2024
Ubuntu priority
Description
The InMemoryUrlProtocol::Read function in media/filters/in_memory_url_protocol.cc in Google Chrome before 35.0.1916.114 relies on an insufficiently large integer data type, which allows remote attackers to cause a denial of service (out-of-bounds read) via vectors that trigger use of a large buffer.
Status
| Package | Ubuntu Release | Status | 
|---|---|---|
| chromium-browser | 14.04 LTS trusty | 
                                Fixed 36.0.1985.125-0ubuntu1.14.04.0~pkg1029 
                                
                               | 
| oxide-qt | 14.04 LTS trusty | 
                                Fixed 1.0.4-0ubuntu0.14.04.1 
                                
                               | 
References
Related Ubuntu Security Notices (USN)
- USN-2298-1
- Oxide vulnerabilities
- 23 July 2014