7.5
CVSSv2

CVE-2015-1216

Published: 09/03/2015 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Use-after-free vulnerability in the V8Window::namedPropertyGetterCustom function in bindings/core/v8/custom/V8WindowCustom.cpp in the V8 bindings in Blink, as used in Google Chrome prior to 41.0.2272.76, allows remote malicious users to cause a denial of service or possibly have unspecified other impact via vectors that trigger a frame detachment.

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

canonical ubuntu linux 14.10

canonical ubuntu linux 14.04

redhat enterprise linux desktop supplementary 6.0

redhat enterprise linux server supplementary 6.0

redhat enterprise linux workstation supplementary 6.0

redhat enterprise linux server supplementary eus 6.6.z

Vendor Advisories

Several security issues were fixed in Oxide ...
Use-after-free vulnerability in the V8Window::namedPropertyGetterCustom function in bindings/core/v8/custom/V8WindowCustomcpp in the V8 bindings in Blink, as used in Google Chrome before 410227276, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a frame detachment ...