Upstream information
Description
Multiple buffer overflows in runtime.cc in Google V8 before 3.22.24.7, as used in Google Chrome before 31.0.1650.63, allow remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a large typed array, related to the (1) Runtime_TypedArrayInitialize and (2) Runtime_TypedArrayInitializeFromArrayLike functions.SUSE information
Overall state of this security issue: Resolved
This issue is currently rated as having moderate severity.
National Vulnerability Database | |
---|---|
Base Score | 7.5 |
Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Access Vector | Network |
Access Complexity | Low |
Authentication | None |
Confidentiality Impact | Partial |
Integrity Impact | Partial |
Availability Impact | Partial |
SUSE Security Advisories:
- openSUSE-SU-2013:1927-1, published Mon, 23 Dec 2013 15:04:16 +0100 (CET)
- openSUSE-SU-2013:1933-1, published Mon, 23 Dec 2013 15:06:12 +0100 (CET)
- openSUSE-SU-2013:1960-1, published Wed, 25 Dec 2013 18:09:56 +0100 (CET)
- openSUSE-SU-2013:1962-1, published Wed, 25 Dec 2013 18:10:24 +0100 (CET)
- openSUSE-SU-2014:0065-1, published Wed, 15 Jan 2014 11:04:14 +0100 (CET)
- openSUSE-SU-2014:0092-1, published Mon, 20 Jan 2014 12:04:16 +0100 (CET)
List of released packages
Product(s) | Fixed package version(s) | References |
---|---|---|
openSUSE Leap 15.0 |
| Patchnames: openSUSE Leap 15.0 GA chromium-66.0.3359.170-lp150.1.1 |
openSUSE Tumbleweed |
| Patchnames: openSUSE Tumbleweed GA chromedriver-55.0.2883.75-3.1 openSUSE Tumbleweed GA libv8-5-5.3.171-4.1 openSUSE Tumbleweed GA ungoogled-chromium-113.0.5672.92-1.1 |
SUSE Timeline for this CVE
CVE page created: Sat Dec 7 12:15:25 2013CVE page last modified: Mon May 22 00:29:31 2023