CVE-2014-1721
09.04.2014, 10:57
Google V8, as used in Google Chrome before 34.0.1847.116, does not properly implement lazy deoptimization, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via crafted JavaScript code, as demonstrated by improper handling of a heap allocation of a number outside the Small Integer (aka smi) range.Enginsight
| Vendor | Product | Version |
|---|---|---|
| chrome | 𝑥 ≤ 34.0.1847.115 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| chromium-browser |
| ||||||||||||||||||||||||||||
| libv8 |
| ||||||||||||||||||||||||||||
| libv8-3.14 |
| ||||||||||||||||||||||||||||
| oxide-qt |
| ||||||||||||||||||||||||||||
| qtjsbackend-opensource-src |
|
Common Weakness Enumeration
References