VDB
CVE-2015-6792
CVE-2015-6792
PUBLISHED
CVSS 9.800000190734863 CRITICAL
The MIDI subsystem in Google Chrome before 47.0.2526.106 does not properly handle the sending of data, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors, related to midi_manager.cc, midi_manager_alsa.cc, and midi_manager_mac.cc, a different vulnerability than CVE-2015-8664.
EPSS 3.96% · 90.1th percentile
Risk Scores
CVSS 3.0
9.800000190734863
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
3.96%
90.1th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:14.04:LTS | chromium-browser | 0, 29.0.1547.65-0ubuntu2, 34.0.1847.116-0ubuntu2 |
Timeline
- Dec 16, 2015 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 17, 2022 CVE Updated
- May 21, 2022 EPSS Score
- Sep 5, 2022 EPSS Score
- Oct 28, 2022 EPSS Score
- Dec 20, 2022 EPSS Score
- Feb 11, 2023 EPSS Score
- Apr 5, 2023 EPSS Score
- May 1, 2023 EPSS Score
- May 28, 2023 EPSS Score
References
- https://ubuntu.com/security/CVE-2015-6792 third-party-advisory
- http://googlechromereleases.blogspot.de/2015/12/stable-channel-update_15.html third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2015-6792 third-party-advisory