CVE-2014-3192
08.10.2014, 10:55
Use-after-free vulnerability in the ProcessingInstruction::setXSLStyleSheet function in core/dom/ProcessingInstruction.cpp in the DOM implementation in Blink, as used in Google Chrome before 38.0.2125.101, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.Enginsight
| Vendor | Product | Version |
|---|---|---|
| redhat | enterprise_linux_desktop_supplementary | 6.0 |
| redhat | enterprise_linux_server_supplementary | 6.0 |
| redhat | enterprise_linux_server_supplementary_eus | 6.6.z:z |
| redhat | enterprise_linux_workstation_supplementary | 6.0 |
| apple | itunes | 𝑥 ≤ 12.1.3 |
| apple | safari | 6.2.2 |
| apple | safari | 7.1.2 |
| apple | safari | 8.0.2 |
| apple | iphone_os | 𝑥 ≤ 8.1.2 |
| apple | tvos | 𝑥 ≤ 7.0.1 |
| chrome | 𝑥 ≤ 38.0.2125.7 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| chromium-browser |
| ||||||||||||
| oxide-qt |
|
Common Weakness Enumeration
References