CVE-2017-15395 PUBLISHED

A use after free in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page, aka an ImageCapture NULL pointer dereference.

EPSS 1.41% · 80.4th percentile

Risk Scores

EPSS Score
1.41%
80.4th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSchromium-browser29.0.1547.65-0ubuntu2, 31.0.1650.63-0ubuntu1~20131204.1, 32.0.1700.107-0ubuntu1~20140204.977.1
Ubuntu:16.04:LTSchromium-browser58.0.3029.81-0ubuntu0.16.04.1277, 0, 45.0.2454.101-0ubuntu1.1201
Ubuntu:18.04:LTSchromium-browser0, 61.0.3163.100-0ubuntu1.1378
Ubuntu:16.04:LTSoxide-qt1.10.3-0ubuntu0.15.10.1, 1.10.3-0ubuntu0.15.10.2, 1.11.3-0ubuntu3

Timeline

References

Open in Interactive Console →