CVE-2015-1301
published 2015-09-03CVE-2015-1301: Multiple unspecified vulnerabilities in Google Chrome before 45.0.2454.85 allow attackers to cause a denial of service or possibly have other impact via…
PriorityP429high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.37%
69.2th percentile
Multiple unspecified vulnerabilities in Google Chrome before 45.0.2454.85 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | <= 44.0.2403 | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu6.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Oxide vulnerabilities
vendor_ubuntu·2015-09-08·CVSS 6.4
CVE-2015-1291 [MEDIUM] Oxide vulnerabilities
Title: Oxide vulnerabilities
Summary: Several security issues were fixed in Oxide.
It was discovered that the DOM tree could be corrupted during parsing in
some circumstances. If a user were tricked in to opening a specially
crafted website, an attacker could potentially exploit this to bypass
same-origin restrictions or cause a denial of service. (CVE-2015-1291)
An issue was discovered in NavigatorServiceWorker::serviceWorker in Blink.
If a user were tricked in to opening a specially crafted website, an
attacker could potentially exploit this to bypass same-origin
restrictions. (CVE-2015-1292)
An issue was discovered in the DOM implementation in Blink. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit this to bypass same-origin res
Red Hat
chromium-browser: various fixes from internal audits
vendor_redhat·2015-09-01·CVSS 7.5
CVE-2015-1301 [HIGH] chromium-browser: various fixes from internal audits
chromium-browser: various fixes from internal audits
Multiple unspecified vulnerabilities in Google Chrome before 45.0.2454.85 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
GHSA
GHSA-vpp4-xw7x-jq9h: Multiple unspecified vulnerabilities in Google Chrome before 45
ghsa_unreviewed·2022-05-17
CVE-2015-1301 [HIGH] GHSA-vpp4-xw7x-jq9h: Multiple unspecified vulnerabilities in Google Chrome before 45
Multiple unspecified vulnerabilities in Google Chrome before 45.0.2454.85 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
OSV
oxide-qt vulnerabilities
osv·2015-09-08·CVSS 6.4
CVE-2015-1291 [MEDIUM] oxide-qt vulnerabilities
oxide-qt vulnerabilities
It was discovered that the DOM tree could be corrupted during parsing in
some circumstances. If a user were tricked in to opening a specially
crafted website, an attacker could potentially exploit this to bypass
same-origin restrictions or cause a denial of service. (CVE-2015-1291)
An issue was discovered in NavigatorServiceWorker::serviceWorker in Blink.
If a user were tricked in to opening a specially crafted website, an
attacker could potentially exploit this to bypass same-origin
restrictions. (CVE-2015-1292)
An issue was discovered in the DOM implementation in Blink. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit this to bypass same-origin restrictions.
(CVE-2015-1293)
A use-after-free was discovered
OSV
CVE-2015-1301: Multiple unspecified vulnerabilities in Google Chrome before 45
osv·2015-09-02·CVSS 7.5
CVE-2015-1301 [HIGH] CVE-2015-1301: Multiple unspecified vulnerabilities in Google Chrome before 45
Multiple unspecified vulnerabilities in Google Chrome before 45.0.2454.85 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
No detection rules found.
No public exploits indexed.
http://googlechromereleases.blogspot.com/2015/09/stable-channel-update.htmlhttp://lists.opensuse.org/opensuse-updates/2015-09/msg00029.htmlhttp://lists.opensuse.org/opensuse-updates/2015-11/msg00013.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1712.htmlhttp://www.debian.org/security/2015/dsa-3351http://www.securitytracker.com/id/1033472https://code.google.com/p/chromium/issues/detail?id=413706https://code.google.com/p/chromium/issues/detail?id=482369https://code.google.com/p/chromium/issues/detail?id=485413https://code.google.com/p/chromium/issues/detail?id=498338https://code.google.com/p/chromium/issues/detail?id=498475https://code.google.com/p/chromium/issues/detail?id=502794https://code.google.com/p/chromium/issues/detail?id=507018https://code.google.com/p/chromium/issues/detail?id=508703https://code.google.com/p/chromium/issues/detail?id=508705https://code.google.com/p/chromium/issues/detail?id=517364https://code.google.com/p/chromium/issues/detail?id=517906https://code.google.com/p/chromium/issues/detail?id=526825http://googlechromereleases.blogspot.com/2015/09/stable-channel-update.htmlhttp://lists.opensuse.org/opensuse-updates/2015-09/msg00029.htmlhttp://lists.opensuse.org/opensuse-updates/2015-11/msg00013.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1712.htmlhttp://www.debian.org/security/2015/dsa-3351http://www.securitytracker.com/id/1033472https://code.google.com/p/chromium/issues/detail?id=413706https://code.google.com/p/chromium/issues/detail?id=482369https://code.google.com/p/chromium/issues/detail?id=485413https://code.google.com/p/chromium/issues/detail?id=498338https://code.google.com/p/chromium/issues/detail?id=498475https://code.google.com/p/chromium/issues/detail?id=502794https://code.google.com/p/chromium/issues/detail?id=507018https://code.google.com/p/chromium/issues/detail?id=508703https://code.google.com/p/chromium/issues/detail?id=508705https://code.google.com/p/chromium/issues/detail?id=517364https://code.google.com/p/chromium/issues/detail?id=517906https://code.google.com/p/chromium/issues/detail?id=526825
2015-09-03
Published