CVE-2014-3165

Use-after-free vulnerability in modules/websockets/WorkerThreadableWebSocketChannel.cpp in the Web Sockets implementation in Blink, as used in Google Chrome before 36.0.1985.143, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an unexpectedly long lifetime of a temporary object during method completion.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
ChromeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 78%
VendorProductVersion
debiandebian_linux
7.0
debiandebian_linux
8.0
googlechrome
𝑥
≤ 36.0.1985.142
googlechrome
36.0.1985.1
googlechrome
36.0.1985.2
googlechrome
36.0.1985.3
googlechrome
36.0.1985.4
googlechrome
36.0.1985.5
googlechrome
36.0.1985.6
googlechrome
36.0.1985.8
googlechrome
36.0.1985.12
googlechrome
36.0.1985.13
googlechrome
36.0.1985.14
googlechrome
36.0.1985.15
googlechrome
36.0.1985.16
googlechrome
36.0.1985.17
googlechrome
36.0.1985.18
googlechrome
36.0.1985.19
googlechrome
36.0.1985.20
googlechrome
36.0.1985.21
googlechrome
36.0.1985.22
googlechrome
36.0.1985.23
googlechrome
36.0.1985.24
googlechrome
36.0.1985.25
googlechrome
36.0.1985.26
googlechrome
36.0.1985.27
googlechrome
36.0.1985.28
googlechrome
36.0.1985.29
googlechrome
36.0.1985.30
googlechrome
36.0.1985.31
googlechrome
36.0.1985.32
googlechrome
36.0.1985.33
googlechrome
36.0.1985.34
googlechrome
36.0.1985.35
googlechrome
36.0.1985.36
googlechrome
36.0.1985.37
googlechrome
36.0.1985.38
googlechrome
36.0.1985.39
googlechrome
36.0.1985.40
googlechrome
36.0.1985.41
googlechrome
36.0.1985.42
googlechrome
36.0.1985.43
googlechrome
36.0.1985.44
googlechrome
36.0.1985.45
googlechrome
36.0.1985.46
googlechrome
36.0.1985.47
googlechrome
36.0.1985.48
googlechrome
36.0.1985.49
googlechrome
36.0.1985.50
googlechrome
36.0.1985.51
googlechrome
36.0.1985.52
googlechrome
36.0.1985.53
googlechrome
36.0.1985.54
googlechrome
36.0.1985.55
googlechrome
36.0.1985.56
googlechrome
36.0.1985.57
googlechrome
36.0.1985.58
googlechrome
36.0.1985.59
googlechrome
36.0.1985.60
googlechrome
36.0.1985.61
googlechrome
36.0.1985.62
googlechrome
36.0.1985.63
googlechrome
36.0.1985.64
googlechrome
36.0.1985.65
googlechrome
36.0.1985.66
googlechrome
36.0.1985.67
googlechrome
36.0.1985.68
googlechrome
36.0.1985.69
googlechrome
36.0.1985.70
googlechrome
36.0.1985.72
googlechrome
36.0.1985.73
googlechrome
36.0.1985.74
googlechrome
36.0.1985.75
googlechrome
36.0.1985.76
googlechrome
36.0.1985.77
googlechrome
36.0.1985.78
googlechrome
36.0.1985.79
googlechrome
36.0.1985.81
googlechrome
36.0.1985.82
googlechrome
36.0.1985.83
googlechrome
36.0.1985.84
googlechrome
36.0.1985.85
googlechrome
36.0.1985.86
googlechrome
36.0.1985.87
googlechrome
36.0.1985.88
googlechrome
36.0.1985.89
googlechrome
36.0.1985.90
googlechrome
36.0.1985.91
googlechrome
36.0.1985.92
googlechrome
36.0.1985.93
googlechrome
36.0.1985.94
googlechrome
36.0.1985.95
googlechrome
36.0.1985.96
googlechrome
36.0.1985.97
googlechrome
36.0.1985.98
googlechrome
36.0.1985.99
googlechrome
36.0.1985.100
googlechrome
36.0.1985.101
googlechrome
36.0.1985.102
googlechrome
36.0.1985.103
googlechrome
36.0.1985.104
googlechrome
36.0.1985.105
googlechrome
36.0.1985.106
googlechrome
36.0.1985.122
googlechrome
36.0.1985.123
googlechrome
36.0.1985.124
googlechrome
36.0.1985.125
googlechrome
36.0.1985.126
googlechrome
36.0.1985.128
googlechrome
36.0.1985.129
googlechrome
36.0.1985.130
googlechrome
36.0.1985.131
googlechrome
36.0.1985.132
googlechrome
36.0.1985.133
googlechrome
36.0.1985.134
googlechrome
36.0.1985.135
googlechrome
36.0.1985.138
googlechrome
36.0.1985.139
googlechrome
36.0.1985.140
googlechrome
36.0.1985.141
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
chromium-browser
trusty
Fixed 37.0.2062.94-0ubuntu0.14.04.1~pkg1042
released
precise
Fixed 37.0.2062.94-0ubuntu0.12.04.1~pkg909
released
lucid
ignored
oxide-qt
trusty
Fixed 1.0.5-0ubuntu0.14.04.1
released
precise
dne
lucid
dne