CVE-2015-1243
published 2015-05-01CVE-2015-1243: Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver.cpp in the DOM implementation in Blink, as used in…
PriorityP433high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
2.34%
81.9th percentile
Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver.cpp in the DOM implementation in Blink, as used in Google Chrome before 42.0.2311.135, allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering an attempt to unregister a MutationObserver object that is not currently registered.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| chrome | <= 42.0.2311.87 | — | |
| redhat | enterprise_linux_desktop_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary_eus | — | — |
| redhat | enterprise_linux_workstation_supplementary | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-x698-8p98-2886: Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver
ghsa_unreviewed·2022-05-17
CVE-2015-1243 [HIGH] GHSA-x698-8p98-2886: Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver
Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver.cpp in the DOM implementation in Blink, as used in Google Chrome before 42.0.2311.135, allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering an attempt to unregister a MutationObserver object that is not currently registered.
OSV
oxide-qt vulnerabilities
osv·2015-05-06·CVSS 7.5
CVE-2015-1243 [HIGH] oxide-qt vulnerabilities
oxide-qt vulnerabilities
A use-after-free was discovered in the DOM implementation in Blink. If a
user were tricked in to opening a specially crafted website, an attacker
could potentially exploit this to cause a denial of service via renderer
crash, or execute arbitrary code with the privileges of the sandboxed
render process. (CVE-2015-1243)
Multiple security issues were discovered in Chromium. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to read uninitialized memory, cause a denial
of service via application crash or execute arbitrary code with the
privileges of the user invoking the program. (CVE-2015-1250)
OSV
CVE-2015-1243: Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver
osv·2015-04-30·CVSS 7.5
CVE-2015-1243 [HIGH] CVE-2015-1243: Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver
Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver.cpp in the DOM implementation in Blink, as used in Google Chrome before 42.0.2311.135, allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering an attempt to unregister a MutationObserver object that is not currently registered.
Ubuntu
Oxide vulnerabilities
vendor_ubuntu·2015-05-06·CVSS 7.5
CVE-2015-1243 [HIGH] Oxide vulnerabilities
Title: Oxide vulnerabilities
Summary: Several security issues were fixed in Oxide.
A use-after-free was discovered in the DOM implementation in Blink. If a
user were tricked in to opening a specially crafted website, an attacker
could potentially exploit this to cause a denial of service via renderer
crash, or execute arbitrary code with the privileges of the sandboxed
render process. (CVE-2015-1243)
Multiple security issues were discovered in Chromium. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to read uninitialized memory, cause a denial
of service via application crash or execute arbitrary code with the
privileges of the user invoking the program. (CVE-2015-1250)
Instructions: In general, a standard system update wil
Red Hat
chromium-browser: use-after-free in DOM
vendor_redhat·2015-01-28·CVSS 7.5
CVE-2015-1243 [HIGH] CWE-416 chromium-browser: use-after-free in DOM
chromium-browser: use-after-free in DOM
Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver.cpp in the DOM implementation in Blink, as used in Google Chrome before 42.0.2311.135, allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering an attempt to unregister a MutationObserver object that is not currently registered.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-2627 Oracle JDK: unspecified vulnerability fixed in 6u101, 7u85 and 8u51 (Install)
bugzilla·2015-07-15·CVSS 2.6
CVE-2015-2627 [LOW] CVE-2015-2627 Oracle JDK: unspecified vulnerability fixed in 6u101, 7u85 and 8u51 (Install)
CVE-2015-2627 Oracle JDK: unspecified vulnerability fixed in 6u101, 7u85 and 8u51 (Install)
Oracle Java SE 6u101, 7u85 and 8u51 fixes an unspecified vulnerability in the Install component (CVE-2015-2627). Upstream has CVSSv2 scored this issue as: 2.6/AV:N/AC:H/Au:N/C:P/I:N/A:N
External Reference:
http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html#AppendixJAVA
Discussion:
This issue has been addressed in the following products:
Oracle Java for Red Hat Enterprise Linux 5
Oracle Java for Red Hat Enterprise Linux 7
Oracle Java for Red Hat Enterprise Linux 6
Via RHSA-2015:1243 https://rhn.redhat.com/errata/RHSA-2015-1243.html
---
This issue has been addressed in the following products:
Oracle Java for Red Hat Enterprise Linux 6
Oracle Java for Red Hat Enterprise
Bugzilla
CVE-2015-2637 Oracle JDK: unspecified vulnerability fixed in 6u101, 7u85 and 8u51 (2D)
bugzilla·2015-07-15·CVSS 5.0
CVE-2015-2637 [MEDIUM] CVE-2015-2637 Oracle JDK: unspecified vulnerability fixed in 6u101, 7u85 and 8u51 (2D)
CVE-2015-2637 Oracle JDK: unspecified vulnerability fixed in 6u101, 7u85 and 8u51 (2D)
Oracle Java SE 6u101, 7u85 and 8u51 fixes an unspecified vulnerability in the 2D component (CVE-2015-2637). Upstream has CVSSv2 scored this issue as: 5.0/AV:N/AC:L/Au:N/C:P/I:N/A:N
External Reference:
http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html#AppendixJAVA
Discussion:
This issue has been addressed in the following products:
Oracle Java for Red Hat Enterprise Linux 5
Oracle Java for Red Hat Enterprise Linux 7
Oracle Java for Red Hat Enterprise Linux 6
Via RHSA-2015:1243 https://rhn.redhat.com/errata/RHSA-2015-1243.html
---
This issue has been addressed in the following products:
Oracle Java for Red Hat Enterprise Linux 6
Oracle Java for Red Hat Enterprise Linux 7
O
Bugzilla
CVE-2015-1243 chromium-browser: use-after-free in DOM
bugzilla·2015-04-29·CVSS 7.5
CVE-2015-1243 [HIGH] CVE-2015-1243 chromium-browser: use-after-free in DOM
CVE-2015-1243 chromium-browser: use-after-free in DOM
An unspecified use-after-free flaw was found in the DOM component of the Chromium browser.
External References:
http://googlechromereleases.blogspot.com/2015/04/stable-channel-update_28.html
Discussion:
This issue has been addressed in the following products:
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2015:0921 https://rhn.redhat.com/errata/RHSA-2015-0921.html
http://googlechromereleases.blogspot.com/2015/04/stable-channel-update_28.htmlhttp://lists.opensuse.org/opensuse-updates/2015-05/msg00009.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0921.htmlhttp://www.debian.org/security/2015/dsa-3242http://www.securityfocus.com/bid/74389http://www.securitytracker.com/id/1032234http://www.ubuntu.com/usn/USN-2582-1https://code.google.com/p/chromium/issues/detail?id=453279https://security.gentoo.org/glsa/201506-04https://src.chromium.org/viewvc/blink?revision=192655&view=revisionhttp://googlechromereleases.blogspot.com/2015/04/stable-channel-update_28.htmlhttp://lists.opensuse.org/opensuse-updates/2015-05/msg00009.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0921.htmlhttp://www.debian.org/security/2015/dsa-3242http://www.securityfocus.com/bid/74389http://www.securitytracker.com/id/1032234http://www.ubuntu.com/usn/USN-2582-1https://code.google.com/p/chromium/issues/detail?id=453279https://security.gentoo.org/glsa/201506-04https://src.chromium.org/viewvc/blink?revision=192655&view=revision
2015-05-01
Published