6.8
CVSSv2

CVE-2015-1321

Published: 29/04/2015 Updated: 30/04/2015
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Use-after-free vulnerability in the file picker implementation in Oxide prior to 1.6.5 allows remote malicious users to cause a denial of service (crash) or possibly execute arbitrary code via a crafted webpage.

Vulnerable Product Search on Vulmon Subscribe to Product

canonical ubuntu linux 14.04

canonical ubuntu linux 14.10

canonical ubuntu linux 15.1

oxide project oxide

Vendor Advisories

Several security issues were fixed in Oxide ...