ALT-BU-2014-2649-1
Branch t7 update bulletin.
Closed vulnerabilities
BDU:2014-00146
Уязвимость браузера Google Chrome, позволяющая злоумышленнику вызвать отказ в обслуживании
BDU:2015-00103
Уязвимость браузера Google Chrome, позволяющая злоумышленнику вызвать отказ в обслуживании
Modified: 2024-11-21
CVE-2013-6653
Use-after-free vulnerability in the web contents implementation in Google Chrome before 33.0.1750.117 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving attempted conflicting access to the color chooser.
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- openSUSE-SU-2014:0327
- openSUSE-SU-2014:0327
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=331790
- https://code.google.com/p/chromium/issues/detail?id=331790
- https://src.chromium.org/viewvc/chrome?revision=244710&view=revision
- https://src.chromium.org/viewvc/chrome?revision=244710&view=revision
Modified: 2024-11-21
CVE-2013-6654
The SVGAnimateElement::calculateAnimatedValue function in core/svg/SVGAnimateElement.cpp in Blink, as used in Google Chrome before 33.0.1750.117, does not properly handle unexpected data types, which allows remote attackers to cause a denial of service (incorrect cast) or possibly have unspecified other impact via unknown vectors.
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- openSUSE-SU-2014:0327
- openSUSE-SU-2014:0327
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=333176
- https://code.google.com/p/chromium/issues/detail?id=333176
- https://src.chromium.org/viewvc/blink?revision=165009&view=revision
- https://src.chromium.org/viewvc/blink?revision=165009&view=revision
Modified: 2024-11-21
CVE-2013-6655
Use-after-free vulnerability in Blink, as used in Google Chrome before 33.0.1750.117, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to improper handling of overflowchanged DOM events during interaction between JavaScript and layout.
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- openSUSE-SU-2014:0327
- openSUSE-SU-2014:0327
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=293534
- https://code.google.com/p/chromium/issues/detail?id=293534
- https://src.chromium.org/viewvc/blink?revision=162655&view=revision
- https://src.chromium.org/viewvc/blink?revision=162655&view=revision
Modified: 2024-11-21
CVE-2013-6656
The XSSAuditor::init function in core/html/parser/XSSAuditor.cpp in the XSS auditor in Blink, as used in Google Chrome before 33.0.1750.117, processes POST requests by using the body of a redirecting page instead of the body of a redirect target, which allows remote attackers to obtain sensitive information via unspecified vectors.
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- openSUSE-SU-2014:0327
- openSUSE-SU-2014:0327
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=331725
- https://code.google.com/p/chromium/issues/detail?id=331725
- https://src.chromium.org/viewvc/blink?revision=164749&view=revision
- https://src.chromium.org/viewvc/blink?revision=164749&view=revision
Modified: 2024-11-21
CVE-2013-6657
core/html/parser/XSSAuditor.cpp in the XSS auditor in Blink, as used in Google Chrome before 33.0.1750.117, inserts the about:blank URL during certain blocking of FORM elements within HTTP requests, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via unspecified vectors.
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- openSUSE-SU-2014:0327
- openSUSE-SU-2014:0327
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=331060
- https://code.google.com/p/chromium/issues/detail?id=331060
- https://src.chromium.org/viewvc/blink?revision=164538&view=revision
- https://src.chromium.org/viewvc/blink?revision=164538&view=revision
Modified: 2024-11-21
CVE-2013-6658
Multiple use-after-free vulnerabilities in the layout implementation in Blink, as used in Google Chrome before 33.0.1750.117, allow remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving (1) running JavaScript code during execution of the updateWidgetPositions function or (2) making a call into a plugin during execution of the updateWidgetPositions function.
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- openSUSE-SU-2014:0327
- openSUSE-SU-2014:0327
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=322891
- https://code.google.com/p/chromium/issues/detail?id=322891
- https://src.chromium.org/viewvc/blink?revision=165052&view=revision
- https://src.chromium.org/viewvc/blink?revision=165052&view=revision
Modified: 2024-11-21
CVE-2013-6659
The SSLClientSocketNSS::Core::OwnAuthCertHandler function in net/socket/ssl_client_socket_nss.cc in Google Chrome before 33.0.1750.117 does not prevent changes to server X.509 certificates during renegotiations, which allows remote SSL servers to trigger use of a new certificate chain, inconsistent with the user's expectations, by initiating a TLS renegotiation.
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- openSUSE-SU-2014:0327
- openSUSE-SU-2014:0327
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=306959
- https://code.google.com/p/chromium/issues/detail?id=306959
- https://src.chromium.org/viewvc/chrome?revision=229611&view=revision
- https://src.chromium.org/viewvc/chrome?revision=229611&view=revision
Modified: 2024-11-21
CVE-2013-6660
The drag-and-drop implementation in Google Chrome before 33.0.1750.117 does not properly restrict the information in WebDropData data structures, which allows remote attackers to discover full pathnames via a crafted web site.
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- openSUSE-SU-2014:0327
- openSUSE-SU-2014:0327
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=332579
- https://code.google.com/p/chromium/issues/detail?id=332579
- https://src.chromium.org/viewvc/chrome?revision=244538&view=revision
- https://src.chromium.org/viewvc/chrome?revision=244538&view=revision
Modified: 2024-11-21
CVE-2013-6661
Multiple unspecified vulnerabilities in Google Chrome before 33.0.1750.117 allow attackers to bypass the sandbox protection mechanism after obtaining renderer access, or have other impact, via unknown vectors.
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
- openSUSE-SU-2014:0327
- openSUSE-SU-2014:0327
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=294687
- https://code.google.com/p/chromium/issues/detail?id=294687
- https://code.google.com/p/chromium/issues/detail?id=312016
- https://code.google.com/p/chromium/issues/detail?id=312016
- https://code.google.com/p/chromium/issues/detail?id=313005
- https://code.google.com/p/chromium/issues/detail?id=313005
- https://code.google.com/p/chromium/issues/detail?id=314088
- https://code.google.com/p/chromium/issues/detail?id=314088
- https://code.google.com/p/chromium/issues/detail?id=324812
- https://code.google.com/p/chromium/issues/detail?id=324812
- https://code.google.com/p/chromium/issues/detail?id=326860
- https://code.google.com/p/chromium/issues/detail?id=326860
- https://code.google.com/p/chromium/issues/detail?id=328620
- https://code.google.com/p/chromium/issues/detail?id=328620
- https://code.google.com/p/chromium/issues/detail?id=329651
- https://code.google.com/p/chromium/issues/detail?id=329651
- https://code.google.com/p/chromium/issues/detail?id=330222
- https://code.google.com/p/chromium/issues/detail?id=330222
- https://code.google.com/p/chromium/issues/detail?id=330750
- https://code.google.com/p/chromium/issues/detail?id=330750
- https://code.google.com/p/chromium/issues/detail?id=332957
- https://code.google.com/p/chromium/issues/detail?id=332957
- https://code.google.com/p/chromium/issues/detail?id=333885
- https://code.google.com/p/chromium/issues/detail?id=333885
- https://code.google.com/p/chromium/issues/detail?id=334274
- https://code.google.com/p/chromium/issues/detail?id=334274
- https://code.google.com/p/chromium/issues/detail?id=338464
- https://code.google.com/p/chromium/issues/detail?id=338464
- https://code.google.com/p/chromium/issues/detail?id=338532
- https://code.google.com/p/chromium/issues/detail?id=338532
- https://code.google.com/p/chromium/issues/detail?id=338561
- https://code.google.com/p/chromium/issues/detail?id=338561
- https://code.google.com/p/chromium/issues/detail?id=339337
- https://code.google.com/p/chromium/issues/detail?id=339337
- https://code.google.com/p/chromium/issues/detail?id=341220
- https://code.google.com/p/chromium/issues/detail?id=341220
- https://code.google.com/p/chromium/issues/detail?id=344876
- https://code.google.com/p/chromium/issues/detail?id=344876
Modified: 2024-11-21
CVE-2013-6663
Use-after-free vulnerability in the SVGImage::setContainerSize function in core/svg/graphics/SVGImage.cpp in the SVG implementation in Blink, as used in Google Chrome before 33.0.1750.146, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the resizing of a view.
- APPLE-SA-2014-09-17-1
- APPLE-SA-2014-09-17-1
- APPLE-SA-2014-09-17-2
- APPLE-SA-2014-09-17-2
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- 61306
- 61306
- 61318
- 61318
- http://support.apple.com/kb/HT6440
- http://support.apple.com/kb/HT6440
- http://support.apple.com/kb/HT6441
- http://support.apple.com/kb/HT6441
- http://support.apple.com/kb/HT6442
- http://support.apple.com/kb/HT6442
- DSA-2883
- DSA-2883
- 65930
- 65930
- https://code.google.com/p/chromium/issues/detail?id=344492
- https://code.google.com/p/chromium/issues/detail?id=344492
- https://src.chromium.org/viewvc/blink?revision=168152&view=revision
- https://src.chromium.org/viewvc/blink?revision=168152&view=revision
- https://support.apple.com/kb/HT6537
- https://support.apple.com/kb/HT6537
Modified: 2024-11-21
CVE-2013-6664
Use-after-free vulnerability in the FormAssociatedElement::formRemovedFromTree function in core/html/FormAssociatedElement.cpp in Blink, as used in Google Chrome before 33.0.1750.146, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving FORM elements, as demonstrated by use of the speech-recognition feature.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- DSA-2883
- DSA-2883
- 65930
- 65930
- https://code.google.com/p/chromium/issues/detail?id=326854
- https://code.google.com/p/chromium/issues/detail?id=326854
- https://src.chromium.org/viewvc/blink?revision=163825&view=revision
- https://src.chromium.org/viewvc/blink?revision=163825&view=revision
Modified: 2024-11-21
CVE-2013-6665
Heap-based buffer overflow in the ResourceProvider::InitializeSoftware function in cc/resources/resource_provider.cc in Google Chrome before 33.0.1750.146 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large texture size that triggers improper memory allocation in the software renderer.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- DSA-2883
- DSA-2883
- 65930
- 65930
- https://code.google.com/p/chromium/issues/detail?id=337882
- https://code.google.com/p/chromium/issues/detail?id=337882
- https://src.chromium.org/viewvc/chrome?revision=250870&view=revision
- https://src.chromium.org/viewvc/chrome?revision=250870&view=revision
Modified: 2024-11-21
CVE-2013-6666
The PepperFlashRendererHost::OnNavigate function in renderer/pepper/pepper_flash_renderer_host.cc in Google Chrome before 33.0.1750.146 does not verify that all headers are Cross-Origin Resource Sharing (CORS) simple headers before proceeding with a PPB_Flash.Navigate operation, which might allow remote attackers to bypass intended CORS restrictions via an inappropriate header.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- DSA-2883
- DSA-2883
- 65930
- 65930
- https://code.google.com/p/chromium/issues/detail?id=332023
- https://code.google.com/p/chromium/issues/detail?id=332023
- https://src.chromium.org/viewvc/chrome?revision=249114&view=revision
- https://src.chromium.org/viewvc/chrome?revision=249114&view=revision
Modified: 2024-11-21
CVE-2013-6667
Multiple unspecified vulnerabilities in Google Chrome before 33.0.1750.146 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- DSA-2883
- DSA-2883
- 65930
- 65930
- https://code.google.com/p/chromium/issues/detail?id=329006
- https://code.google.com/p/chromium/issues/detail?id=329006
- https://code.google.com/p/chromium/issues/detail?id=332947
- https://code.google.com/p/chromium/issues/detail?id=332947
- https://code.google.com/p/chromium/issues/detail?id=333279
- https://code.google.com/p/chromium/issues/detail?id=333279
- https://code.google.com/p/chromium/issues/detail?id=333280
- https://code.google.com/p/chromium/issues/detail?id=333280
- https://code.google.com/p/chromium/issues/detail?id=339667
- https://code.google.com/p/chromium/issues/detail?id=339667
- https://code.google.com/p/chromium/issues/detail?id=341060
- https://code.google.com/p/chromium/issues/detail?id=341060
- https://code.google.com/p/chromium/issues/detail?id=341063
- https://code.google.com/p/chromium/issues/detail?id=341063
- https://code.google.com/p/chromium/issues/detail?id=341068
- https://code.google.com/p/chromium/issues/detail?id=341068
- https://code.google.com/p/chromium/issues/detail?id=343265
- https://code.google.com/p/chromium/issues/detail?id=343265
- https://code.google.com/p/chromium/issues/detail?id=343964
- https://code.google.com/p/chromium/issues/detail?id=343964
- https://code.google.com/p/chromium/issues/detail?id=344186
- https://code.google.com/p/chromium/issues/detail?id=344186
- https://code.google.com/p/chromium/issues/detail?id=344887
- https://code.google.com/p/chromium/issues/detail?id=344887
- https://code.google.com/p/chromium/issues/detail?id=345959
- https://code.google.com/p/chromium/issues/detail?id=345959
- https://code.google.com/p/chromium/issues/detail?id=347302
- https://code.google.com/p/chromium/issues/detail?id=347302
- https://code.google.com/p/chromium/issues/detail?id=347909
- https://code.google.com/p/chromium/issues/detail?id=347909
- https://code.google.com/p/chromium/issues/detail?id=348175
- https://code.google.com/p/chromium/issues/detail?id=348175
Modified: 2024-11-21
CVE-2013-6668
Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
- http://advisories.mageia.org/MGASA-2014-0516.html
- http://advisories.mageia.org/MGASA-2014-0516.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
- 61184
- 61184
- DSA-2883
- DSA-2883
- MDVSA-2015:142
- MDVSA-2015:142
- 65930
- 65930
- http://www-01.ibm.com/support/docview.wss?uid=swg21683389
- http://www-01.ibm.com/support/docview.wss?uid=swg21683389
- https://code.google.com/p/chromium/issues/detail?id=343964
- https://code.google.com/p/chromium/issues/detail?id=343964
- https://code.google.com/p/chromium/issues/detail?id=344186
- https://code.google.com/p/chromium/issues/detail?id=344186
- https://code.google.com/p/chromium/issues/detail?id=347909
- https://code.google.com/p/chromium/issues/detail?id=347909
- https://code.google.com/p/v8/source/detail?r=19475
- https://code.google.com/p/v8/source/detail?r=19475
- https://code.google.com/p/v8/source/detail?r=19553
- https://code.google.com/p/v8/source/detail?r=19553
- https://code.google.com/p/v8/source/detail?r=19599
- https://code.google.com/p/v8/source/detail?r=19599
Modified: 2024-11-21
CVE-2014-1700
Use-after-free vulnerability in modules/speech/SpeechSynthesis.cpp in Blink, as used in Google Chrome before 33.0.1750.149, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging improper handling of a certain utterance data structure.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- openSUSE-SU-2014:0501
- openSUSE-SU-2014:0501
- GLSA-201408-16
- GLSA-201408-16
- DSA-2883
- DSA-2883
- 1029914
- 1029914
- https://code.google.com/p/chromium/issues/detail?id=344881
- https://code.google.com/p/chromium/issues/detail?id=344881
- https://src.chromium.org/viewvc/blink?revision=168171&view=revision
- https://src.chromium.org/viewvc/blink?revision=168171&view=revision
Modified: 2024-11-21
CVE-2014-1701
The GenerateFunction function in bindings/scripts/code_generator_v8.pm in Blink, as used in Google Chrome before 33.0.1750.149, does not implement a certain cross-origin restriction for the EventTarget::dispatchEvent function, which allows remote attackers to conduct Universal XSS (UXSS) attacks via vectors involving events.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- openSUSE-SU-2014:0501
- openSUSE-SU-2014:0501
- GLSA-201408-16
- GLSA-201408-16
- DSA-2883
- DSA-2883
- 1029914
- 1029914
- https://code.google.com/p/chromium/issues/detail?id=342618
- https://code.google.com/p/chromium/issues/detail?id=342618
- https://src.chromium.org/viewvc/blink?revision=166999&view=revision
- https://src.chromium.org/viewvc/blink?revision=166999&view=revision
Modified: 2024-11-21
CVE-2014-1702
Use-after-free vulnerability in the DatabaseThread::cleanupDatabaseThread function in modules/webdatabase/DatabaseThread.cpp in the web database implementation in Blink, as used in Google Chrome before 33.0.1750.149, allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging improper handling of scheduled tasks during shutdown of a thread.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- openSUSE-SU-2014:0501
- openSUSE-SU-2014:0501
- GLSA-201408-16
- GLSA-201408-16
- DSA-2883
- DSA-2883
- 1029914
- 1029914
- https://code.google.com/p/chromium/issues/detail?id=333058
- https://code.google.com/p/chromium/issues/detail?id=333058
- https://src.chromium.org/viewvc/blink?revision=168059&view=revision
- https://src.chromium.org/viewvc/blink?revision=168059&view=revision
Modified: 2024-11-21
CVE-2014-1703
Use-after-free vulnerability in the WebSocketDispatcherHost::SendOrDrop function in content/browser/renderer_host/websocket_dispatcher_host.cc in the Web Sockets implementation in Google Chrome before 33.0.1750.149 might allow remote attackers to bypass the sandbox protection mechanism by leveraging an incorrect deletion in a certain failure case.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- openSUSE-SU-2014:0501
- openSUSE-SU-2014:0501
- GLSA-201408-16
- GLSA-201408-16
- DSA-2883
- DSA-2883
- 1029914
- 1029914
- https://code.google.com/p/chromium/issues/detail?id=338354
- https://code.google.com/p/chromium/issues/detail?id=338354
- https://src.chromium.org/viewvc/chrome?revision=247627&view=revision
- https://src.chromium.org/viewvc/chrome?revision=247627&view=revision
Modified: 2024-11-21
CVE-2014-1704
Multiple unspecified vulnerabilities in Google V8 before 3.23.17.18, as used in Google Chrome before 33.0.1750.149, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_11.html
- openSUSE-SU-2014:0501
- openSUSE-SU-2014:0501
- GLSA-201408-16
- GLSA-201408-16
- DSA-2883
- DSA-2883
- 1029914
- 1029914
- https://code.google.com/p/chromium/issues/detail?id=328202
- https://code.google.com/p/chromium/issues/detail?id=328202
- https://code.google.com/p/chromium/issues/detail?id=345715
- https://code.google.com/p/chromium/issues/detail?id=345715
- https://code.google.com/p/chromium/issues/detail?id=349079
- https://code.google.com/p/chromium/issues/detail?id=349079
- https://code.google.com/p/v8/source/detail?r=18564
- https://code.google.com/p/v8/source/detail?r=18564
- https://code.google.com/p/v8/source/detail?r=19614
- https://code.google.com/p/v8/source/detail?r=19614
- https://code.google.com/p/v8/source/detail?r=19668
- https://code.google.com/p/v8/source/detail?r=19668
Modified: 2024-11-21
CVE-2014-1705
Google V8, as used in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_14.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_14.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update-for-chrome-os_14.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update-for-chrome-os_14.html
- openSUSE-SU-2014:0501
- openSUSE-SU-2014:0501
- GLSA-201408-16
- GLSA-201408-16
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=351787
- https://code.google.com/p/chromium/issues/detail?id=351787
Modified: 2024-11-21
CVE-2014-1713
Use-after-free vulnerability in the AttributeSetter function in bindings/templates/attributes.cpp in the bindings in Blink, as used in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving the document.location value.
- 20140326 VUPEN Security Research - Google Chrome Blink "locationAttributeSetter" Use-after-free (Pwn2Own)
- 20140326 VUPEN Security Research - Google Chrome Blink "locationAttributeSetter" Use-after-free (Pwn2Own)
- APPLE-SA-2014-04-01-1
- APPLE-SA-2014-04-01-1
- APPLE-SA-2014-04-22-3
- APPLE-SA-2014-04-22-3
- APPLE-SA-2014-04-22-2
- APPLE-SA-2014-04-22-2
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_14.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_14.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update-for-chrome-os_14.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update-for-chrome-os_14.html
- openSUSE-SU-2014:0501
- openSUSE-SU-2014:0501
- GLSA-201408-16
- GLSA-201408-16
- DSA-2883
- DSA-2883
- https://code.google.com/p/chromium/issues/detail?id=352374
- https://code.google.com/p/chromium/issues/detail?id=352374
- https://src.chromium.org/viewvc/blink?revision=169176&view=revision
- https://src.chromium.org/viewvc/blink?revision=169176&view=revision
- https://support.apple.com/kb/HT6537
- https://support.apple.com/kb/HT6537
Modified: 2024-11-21
CVE-2014-1715
Directory traversal vulnerability in Google Chrome before 33.0.1750.152 on OS X and Linux and before 33.0.1750.154 on Windows has unspecified impact and attack vectors.
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_14.html
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_14.html
- openSUSE-SU-2014:0501
- openSUSE-SU-2014:0501
- GLSA-201408-16
- GLSA-201408-16
- DSA-2883
- DSA-2883
- 66249
- 66249
- https://code.google.com/p/chromium/issues/detail?id=352429
- https://code.google.com/p/chromium/issues/detail?id=352429
Package kernel-image-std-def updated to version 3.10.33-alt2 for branch t7 in task 116810.
Closed vulnerabilities
BDU:2015-04307
Уязвимости операционной системы SUSE Linux Enterprise, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
- CVE-2012-2372
- CVE-2013-2929
- CVE-2013-4299
- CVE-2013-4579
- CVE-2013-6382
- CVE-2013-7339
- CVE-2014-0055
- CVE-2014-0077
- CVE-2014-0101
- CVE-2014-0131
- CVE-2014-0155
- CVE-2014-1444
- CVE-2014-1445
- CVE-2014-1446
- CVE-2014-1874
- CVE-2014-2309
- CVE-2014-2523
- CVE-2014-2678
- CVE-2014-2851
- CVE-2014-3122
- CVE-2014-3144
- CVE-2014-3145
- CVE-2014-3917
- CVE-2014-4652
- CVE-2014-4653
- CVE-2014-4654
- CVE-2014-4655
- CVE-2014-4656
- CVE-2014-4699
BDU:2015-04308
Уязвимости операционной системы SUSE Linux Enterprise, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
- CVE-2012-2372
- CVE-2013-2929
- CVE-2013-4299
- CVE-2013-4579
- CVE-2013-6382
- CVE-2013-7339
- CVE-2014-0055
- CVE-2014-0077
- CVE-2014-0101
- CVE-2014-0131
- CVE-2014-0155
- CVE-2014-1444
- CVE-2014-1445
- CVE-2014-1446
- CVE-2014-1874
- CVE-2014-2309
- CVE-2014-2523
- CVE-2014-2678
- CVE-2014-2851
- CVE-2014-3122
- CVE-2014-3144
- CVE-2014-3145
- CVE-2014-3917
- CVE-2014-4652
- CVE-2014-4653
- CVE-2014-4654
- CVE-2014-4655
- CVE-2014-4656
- CVE-2014-4699
BDU:2015-04309
Уязвимости операционной системы SUSE Linux Enterprise, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
- CVE-2012-2372
- CVE-2013-2929
- CVE-2013-4299
- CVE-2013-4579
- CVE-2013-6382
- CVE-2013-7339
- CVE-2014-0055
- CVE-2014-0077
- CVE-2014-0101
- CVE-2014-0131
- CVE-2014-0155
- CVE-2014-1444
- CVE-2014-1445
- CVE-2014-1446
- CVE-2014-1874
- CVE-2014-2309
- CVE-2014-2523
- CVE-2014-2678
- CVE-2014-2851
- CVE-2014-3122
- CVE-2014-3144
- CVE-2014-3145
- CVE-2014-3917
- CVE-2014-4652
- CVE-2014-4653
- CVE-2014-4654
- CVE-2014-4655
- CVE-2014-4656
- CVE-2014-4699
BDU:2015-04310
Уязвимости операционной системы SUSE Linux Enterprise, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
- CVE-2012-2372
- CVE-2013-2929
- CVE-2013-4299
- CVE-2013-4579
- CVE-2013-6382
- CVE-2013-7339
- CVE-2014-0055
- CVE-2014-0077
- CVE-2014-0101
- CVE-2014-0131
- CVE-2014-0155
- CVE-2014-1444
- CVE-2014-1445
- CVE-2014-1446
- CVE-2014-1874
- CVE-2014-2309
- CVE-2014-2523
- CVE-2014-2678
- CVE-2014-2851
- CVE-2014-3122
- CVE-2014-3144
- CVE-2014-3145
- CVE-2014-3917
- CVE-2014-4652
- CVE-2014-4653
- CVE-2014-4654
- CVE-2014-4655
- CVE-2014-4656
- CVE-2014-4699
Modified: 2024-11-21
CVE-2014-2523
net/netfilter/nf_conntrack_proto_dccp.c in the Linux kernel through 3.13.6 uses a DCCP header pointer incorrectly, which allows remote attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a DCCP packet that triggers a call to the (1) dccp_new, (2) dccp_packet, or (3) dccp_error function.
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=b22f5126a24b3b2f15448c3f2a254fc10cbc2b92
- http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git%3Ba=commit%3Bh=b22f5126a24b3b2f15448c3f2a254fc10cbc2b92
- 57446
- 57446
- http://twitter.com/grsecurity/statuses/445496197399461888
- http://twitter.com/grsecurity/statuses/445496197399461888
- [oss-security] 20140317 Re: CVE Request: netfilter: remote memory corruption in nf_conntrack_proto_dccp.c
- [oss-security] 20140317 Re: CVE Request: netfilter: remote memory corruption in nf_conntrack_proto_dccp.c
- 66279
- 66279
- 1029945
- 1029945
- USN-2173-1
- USN-2173-1
- USN-2174-1
- USN-2174-1
- https://bugzilla.redhat.com/show_bug.cgi?id=1077343
- https://bugzilla.redhat.com/show_bug.cgi?id=1077343
- linux-kernel-cve20142523-code-exec(91910)
- linux-kernel-cve20142523-code-exec(91910)
- https://github.com/torvalds/linux/commit/b22f5126a24b3b2f15448c3f2a254fc10cbc2b92
- https://github.com/torvalds/linux/commit/b22f5126a24b3b2f15448c3f2a254fc10cbc2b92