6.8
CVSSv2

CVE-2015-1220

Published: 09/03/2015 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 607
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Use-after-free vulnerability in the GIFImageReader::parseData function in platform/image-decoders/gif/GIFImageReader.cpp in Blink, as used in Google Chrome prior to 41.0.2272.76, allows remote malicious users to cause a denial of service or possibly have unspecified other impact via a crafted frame size in a GIF image.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

redhat enterprise linux desktop supplementary 6.0

redhat enterprise linux server supplementary 6.0

redhat enterprise linux workstation supplementary 6.0

redhat enterprise linux server supplementary eus 6.6.z

canonical ubuntu linux 14.10

canonical ubuntu linux 14.04

google chrome

Vendor Advisories

Several security issues were fixed in Oxide ...
Use-after-free vulnerability in the GIFImageReader::parseData function in platform/image-decoders/gif/GIFImageReadercpp in Blink, as used in Google Chrome before 410227276, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted frame size in a GIF image ...