7.5
CVSSv2

CVE-2015-1217

Published: 09/03/2015 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The V8LazyEventListener::prepareListenerObject function in bindings/core/v8/V8LazyEventListener.cpp in the V8 bindings in Blink, as used in Google Chrome prior to 41.0.2272.76, does not properly compile listeners, which allows remote malicious users to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

redhat enterprise linux desktop supplementary 6.0

redhat enterprise linux server supplementary 6.0

redhat enterprise linux workstation supplementary 6.0

redhat enterprise linux server supplementary eus 6.6.z

canonical ubuntu linux 14.10

canonical ubuntu linux 14.04

Vendor Advisories

Several security issues were fixed in Oxide ...
The V8LazyEventListener::prepareListenerObject function in bindings/core/v8/V8LazyEventListenercpp in the V8 bindings in Blink, as used in Google Chrome before 410227276, does not properly compile listeners, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confu ...