CVE-2014-3165

EUVD-2014-3183
Use-after-free vulnerability in modules/websockets/WorkerThreadableWebSocketChannel.cpp in the Web Sockets implementation in Blink, as used in Google Chrome before 36.0.1985.143, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an unexpectedly long lifetime of a temporary object during method completion.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 82%
Affected Products (NVD)
VendorProductVersion
debiandebian_linux
7.0
debiandebian_linux
8.0
googlechrome
𝑥
≤ 36.0.1985.142
googlechrome
36.0.1985.1
googlechrome
36.0.1985.2
googlechrome
36.0.1985.3
googlechrome
36.0.1985.4
googlechrome
36.0.1985.5
googlechrome
36.0.1985.6
googlechrome
36.0.1985.8
googlechrome
36.0.1985.12
googlechrome
36.0.1985.13
googlechrome
36.0.1985.14
googlechrome
36.0.1985.15
googlechrome
36.0.1985.16
googlechrome
36.0.1985.17
googlechrome
36.0.1985.18
googlechrome
36.0.1985.19
googlechrome
36.0.1985.20
googlechrome
36.0.1985.21
googlechrome
36.0.1985.22
googlechrome
36.0.1985.23
googlechrome
36.0.1985.24
googlechrome
36.0.1985.25
googlechrome
36.0.1985.26
googlechrome
36.0.1985.27
googlechrome
36.0.1985.28
googlechrome
36.0.1985.29
googlechrome
36.0.1985.30
googlechrome
36.0.1985.31
googlechrome
36.0.1985.32
googlechrome
36.0.1985.33
googlechrome
36.0.1985.34
googlechrome
36.0.1985.35
googlechrome
36.0.1985.36
googlechrome
36.0.1985.37
googlechrome
36.0.1985.38
googlechrome
36.0.1985.39
googlechrome
36.0.1985.40
googlechrome
36.0.1985.41
googlechrome
36.0.1985.42
googlechrome
36.0.1985.43
googlechrome
36.0.1985.44
googlechrome
36.0.1985.45
googlechrome
36.0.1985.46
googlechrome
36.0.1985.47
googlechrome
36.0.1985.48
googlechrome
36.0.1985.49
googlechrome
36.0.1985.50
googlechrome
36.0.1985.51
googlechrome
36.0.1985.52
googlechrome
36.0.1985.53
googlechrome
36.0.1985.54
googlechrome
36.0.1985.55
googlechrome
36.0.1985.56
googlechrome
36.0.1985.57
googlechrome
36.0.1985.58
googlechrome
36.0.1985.59
googlechrome
36.0.1985.60
googlechrome
36.0.1985.61
googlechrome
36.0.1985.62
googlechrome
36.0.1985.63
googlechrome
36.0.1985.64
googlechrome
36.0.1985.65
googlechrome
36.0.1985.66
googlechrome
36.0.1985.67
googlechrome
36.0.1985.68
googlechrome
36.0.1985.69
googlechrome
36.0.1985.70
googlechrome
36.0.1985.72
googlechrome
36.0.1985.73
googlechrome
36.0.1985.74
googlechrome
36.0.1985.75
googlechrome
36.0.1985.76
googlechrome
36.0.1985.77
googlechrome
36.0.1985.78
googlechrome
36.0.1985.79
googlechrome
36.0.1985.81
googlechrome
36.0.1985.82
googlechrome
36.0.1985.83
googlechrome
36.0.1985.84
googlechrome
36.0.1985.85
googlechrome
36.0.1985.86
googlechrome
36.0.1985.87
googlechrome
36.0.1985.88
googlechrome
36.0.1985.89
googlechrome
36.0.1985.90
googlechrome
36.0.1985.91
googlechrome
36.0.1985.92
googlechrome
36.0.1985.93
googlechrome
36.0.1985.94
googlechrome
36.0.1985.95
googlechrome
36.0.1985.96
googlechrome
36.0.1985.97
googlechrome
36.0.1985.98
googlechrome
36.0.1985.99
googlechrome
36.0.1985.100
googlechrome
36.0.1985.101
googlechrome
36.0.1985.102
googlechrome
36.0.1985.103
googlechrome
36.0.1985.104
googlechrome
36.0.1985.105
googlechrome
36.0.1985.106
googlechrome
36.0.1985.122
googlechrome
36.0.1985.123
googlechrome
36.0.1985.124
googlechrome
36.0.1985.125
googlechrome
36.0.1985.126
googlechrome
36.0.1985.128
googlechrome
36.0.1985.129
googlechrome
36.0.1985.130
googlechrome
36.0.1985.131
googlechrome
36.0.1985.132
googlechrome
36.0.1985.133
googlechrome
36.0.1985.134
googlechrome
36.0.1985.135
googlechrome
36.0.1985.138
googlechrome
36.0.1985.139
googlechrome
36.0.1985.140
googlechrome
36.0.1985.141
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
chromium-browser
lucid
ignored
precise
Fixed 37.0.2062.94-0ubuntu0.12.04.1~pkg909
released
trusty
Fixed 37.0.2062.94-0ubuntu0.14.04.1~pkg1042
released
oxide-qt
lucid
dne
precise
dne
trusty
Fixed 1.0.5-0ubuntu0.14.04.1
released