CVE-2014-3198
Publication date 8 October 2014
Last updated 24 July 2024
Ubuntu priority
Description
The Instance::HandleInputEvent function in pdf/instance.cc in the PDFium component in Google Chrome before 38.0.2125.101 interprets a certain -1 value as an index instead of a no-visible-page error code, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| chromium-browser | ||
| 14.04 LTS trusty |
Fixed 38.0.2125.111-0ubuntu0.14.04.1.1061
|
|
| oxide-qt | ||
| 14.04 LTS trusty | Not in release | |