7.5
CVSSv2

CVE-2014-1731

Published: 26/04/2014 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

core/html/HTMLSelectElement.cpp in the DOM implementation in Blink, as used in Google Chrome prior to 34.0.1847.131 on Windows and OS X and prior to 34.0.1847.132 on Linux, does not properly check renderer state upon a focus event, which allows remote malicious users to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion" for SELECT elements.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Vendor Advisories

Several security issues were fixed in Oxide ...
Several vulnerabilities have been discovered in the chromium web browser CVE-2014-1730 A type confusion issue was discovered in the v8 javascript library CVE-2014-1731 John Butler discovered a type confusion issue in the WebKit/Blink document object model implementation CVE-2014-1732 Khalil Zhani discovered a use-after-free issu ...
core/html/HTMLSelectElementcpp in the DOM implementation in Blink, as used in Google Chrome before 3401847131 on Windows and OS X and before 3401847132 on Linux, does not properly check renderer state upon a focus event, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leve ...