CVE-2014-1724Speech-dispatcher vulnerability

CWE-3994 documents4 sources
Severity
7.5HIGHNVD
EPSS
1.4%
top 19.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 9
Latest updateMay 17

Description

Use-after-free vulnerability in Free(b)soft Laboratory Speech Dispatcher 0.7.1, as used in Google Chrome before 34.0.1847.116, allows remote attackers to cause a denial of service (application hang) or possibly have unspecified other impact via a text-to-speech request.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

debiandebian/speech-dispatcher< speech-dispatcher 0.8-7 (bookworm)
NVDgoogle/chrome34.0.1847.115

🔴Vulnerability Details

2
GHSA
GHSA-g4f6-64jg-82rv: Use-after-free vulnerability in Free(b)soft Laboratory Speech Dispatcher 02022-05-17
OSV
CVE-2014-1724: Use-after-free vulnerability in Free(b)soft Laboratory Speech Dispatcher 02014-04-09

📋Vendor Advisories

1
Debian
CVE-2014-1724: speech-dispatcher - Use-after-free vulnerability in Free(b)soft Laboratory Speech Dispatcher 0.7.1, ...2014