CVE-2014-3154
Publication date 11 June 2014
Last updated 24 July 2024
Ubuntu priority
Use-after-free vulnerability in the ChildThread::Shutdown function in content/child/child_thread.cc in the filesystem API in Google Chrome before 35.0.1916.153 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to a Blink shutdown.
Status
Package | Ubuntu Release | Status |
---|---|---|
chromium-browser | 14.04 LTS trusty |
Fixed 36.0.1985.125-0ubuntu1.14.04.0~pkg1029
|
oxide-qt | 14.04 LTS trusty |
Fixed 1.0.4-0ubuntu0.14.04.1
|
References
Related Ubuntu Security Notices (USN)
- USN-2298-1
- Oxide vulnerabilities
- 23 July 2014
Other references
- https://src.chromium.org/viewvc/chrome?revision=269345&view=revision
- https://src.chromium.org/viewvc/blink?revision=173620&view=revision
- https://code.google.com/p/chromium/issues/detail?id=369525
- http://googlechromereleases.blogspot.com/2014/06/stable-channel-update.html
- https://www.cve.org/CVERecord?id=CVE-2014-3154