CVE-2015-1251
published 2015-05-20CVE-2015-1251: Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43.0.2357.65 allows remote attackers…
PriorityP337medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
2.44%
82.7th percentile
Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43.0.2357.65 allows remote attackers to execute arbitrary code via a crafted document.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| chrome | <= 42.0.2311.152 | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-gv8f-p965-5v38: Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43
ghsa_unreviewed·2022-05-14
CVE-2015-1251 [MEDIUM] GHSA-gv8f-p965-5v38: Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43
Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43.0.2357.65 allows remote attackers to execute arbitrary code via a crafted document.
OSV
CVE-2015-1251: Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43
osv·2015-05-20·CVSS 6.8
CVE-2015-1251 [MEDIUM] CVE-2015-1251: Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43
Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43.0.2357.65 allows remote attackers to execute arbitrary code via a crafted document.
Red Hat
chromium-browser: Use-after-free in Speech.
vendor_redhat·2015-05-19·CVSS 6.8
CVE-2015-1251 [MEDIUM] CWE-416 chromium-browser: Use-after-free in Speech.
chromium-browser: Use-after-free in Speech.
Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43.0.2357.65 allows remote attackers to execute arbitrary code via a crafted document.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-6817 pgbouncer: failed auth_query lookup leads to connection as auth_user
bugzilla·2015-09-07·CVSS 8.1
CVE-2015-6817 [HIGH] CVE-2015-6817 pgbouncer: failed auth_query lookup leads to connection as auth_user
CVE-2015-6817 pgbouncer: failed auth_query lookup leads to connection as auth_user
The following flaw was found in PgBouncer:
New auth_user functionality introduced in 1.6 allows login as auth_user when client presents unknown username. It’s quite likely auth_user is superuser. Affects only setups that have enabled auth_user in their config.
Upstream issue:
http://comments.gmane.org/gmane.comp.db.postgresql.pgbouncer.general/1251
Upstream patch:
https://github.com/pgbouncer/pgbouncer/commit/7ca3e5279d05fceb1e8a043c6f5b6f58dea3ed38
External References:
https://pgbouncer.github.io/2015/09/pgbouncer-1-6-1/
Discussion:
The auth_user functionality was introduced in version 1.6. Fedora ships versions 1.5.x and is thus not affected.
Bugzilla
CVE-2015-1251 chromium-browser: Use-after-free in Speech.
bugzilla·2015-05-20·CVSS 6.8
CVE-2015-1251 [MEDIUM] CVE-2015-1251 chromium-browser: Use-after-free in Speech.
CVE-2015-1251 chromium-browser: Use-after-free in Speech.
An unspecified use-after-free flaw was found in the Speech. component of the Chromium browser.
Upstream bug: https://code.google.com/p/chromium/issues/detail?id=481015
External References:
http://googlechromereleases.blogspot.com/2015/05/stable-channel-update_19.html
Discussion:
This issue has been addressed in the following products:
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2015:1023 https://rhn.redhat.com/errata/RHSA-2015-1023.html
http://blog.skylined.nl/20161123001.htmlhttp://googlechromereleases.blogspot.com/2015/05/stable-channel-update_19.htmlhttp://lists.opensuse.org/opensuse-updates/2015-05/msg00091.htmlhttp://lists.opensuse.org/opensuse-updates/2015-11/msg00015.htmlhttp://seclists.org/fulldisclosure/2016/Nov/136http://www.debian.org/security/2015/dsa-3267http://www.securityfocus.com/archive/1/539824/100/0/threadedhttp://www.securityfocus.com/bid/74723http://www.securitytracker.com/id/1032375http://zerodayinitiative.com/advisories/ZDI-15-236/https://code.google.com/p/chromium/issues/detail?id=481015https://security.gentoo.org/glsa/201506-04http://blog.skylined.nl/20161123001.htmlhttp://googlechromereleases.blogspot.com/2015/05/stable-channel-update_19.htmlhttp://lists.opensuse.org/opensuse-updates/2015-05/msg00091.htmlhttp://lists.opensuse.org/opensuse-updates/2015-11/msg00015.htmlhttp://seclists.org/fulldisclosure/2016/Nov/136http://www.debian.org/security/2015/dsa-3267http://www.securityfocus.com/archive/1/539824/100/0/threadedhttp://www.securityfocus.com/bid/74723http://www.securitytracker.com/id/1032375http://zerodayinitiative.com/advisories/ZDI-15-236/https://code.google.com/p/chromium/issues/detail?id=481015https://security.gentoo.org/glsa/201506-04
2015-05-20
Published