CVE-2015-6773
published 2015-12-06CVE-2015-6773: The convolution implementation in Skia, as used in Google Chrome before 47.0.2526.73, does not properly constrain row lengths, which allows remote attackers to…
PriorityP433high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.73%
75.3th percentile
The convolution implementation in Skia, as used in Google Chrome before 47.0.2526.73, does not properly constrain row lengths, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via crafted graphics data.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | <= 46.0.2490.86 | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv10.0CRITICAL
vendor_ubuntu10.0CRITICAL
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2c6c-w342-prhc: The convolution implementation in Skia, as used in Google Chrome before 47
ghsa_unreviewed·2022-05-17
CVE-2015-6773 [HIGH] CWE-119 GHSA-2c6c-w342-prhc: The convolution implementation in Skia, as used in Google Chrome before 47
The convolution implementation in Skia, as used in Google Chrome before 47.0.2526.73, does not properly constrain row lengths, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via crafted graphics data.
OSV
oxide-qt vulnerabilities
osv·2015-12-10·CVSS 10.0
CVE-2015-6765 [CRITICAL] oxide-qt vulnerabilities
oxide-qt vulnerabilities
Multiple use-after-free bugs were discovered in the application cache
implementation in Chromium. If a user were tricked in to opening a
specially crafted website, an attacker could potentially exploit these to
cause a denial of service via application crash, or execute arbitrary code
with the privileges of the user invoking the program. (CVE-2015-6765,
CVE-2015-6766, CVE-2015-6767)
Several security issues were discovered in the DOM implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit these to bypass same
origin restrictions. (CVE-2015-6768, CVE-2015-6770)
A security issue was discovered in the provisional-load commit
implementation in Chromium. If a user were tricked in to opening a
OSV
CVE-2015-6773: The convolution implementation in Skia, as used in Google Chrome before 47
osv·2015-12-05·CVSS 7.5
CVE-2015-6773 [HIGH] CVE-2015-6773: The convolution implementation in Skia, as used in Google Chrome before 47
The convolution implementation in Skia, as used in Google Chrome before 47.0.2526.73, does not properly constrain row lengths, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via crafted graphics data.
Ubuntu
Oxide vulnerabilities
vendor_ubuntu·2015-12-10·CVSS 10.0
CVE-2015-6765 [CRITICAL] Oxide vulnerabilities
Title: Oxide vulnerabilities
Summary: Several security issues were fixed in Oxide.
Multiple use-after-free bugs were discovered in the application cache
implementation in Chromium. If a user were tricked in to opening a
specially crafted website, an attacker could potentially exploit these to
cause a denial of service via application crash, or execute arbitrary code
with the privileges of the user invoking the program. (CVE-2015-6765,
CVE-2015-6766, CVE-2015-6767)
Several security issues were discovered in the DOM implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit these to bypass same
origin restrictions. (CVE-2015-6768, CVE-2015-6770)
A security issue was discovered in the provisional-load commit
implemen
Red Hat
chromium-browser: Out of bounds access in Skia
vendor_redhat·2015-12-01·CVSS 7.5
CVE-2015-6773 [HIGH] CWE-119 chromium-browser: Out of bounds access in Skia
chromium-browser: Out of bounds access in Skia
The convolution implementation in Skia, as used in Google Chrome before 47.0.2526.73, does not properly constrain row lengths, which allows remote attackers to cause a denial of service (out-of-bounds memory access) or possibly have unspecified other impact via crafted graphics data.
No detection rules found.
No public exploits indexed.
http://googlechromereleases.blogspot.com/2015/12/stable-channel-update.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00016.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00017.htmlhttp://www.debian.org/security/2015/dsa-3415http://www.securityfocus.com/bid/78416http://www.securitytracker.com/id/1034298http://www.ubuntu.com/usn/USN-2825-1https://code.google.com/p/chromium/issues/detail?id=491660https://codereview.chromium.org/1187173005https://security.gentoo.org/glsa/201603-09http://googlechromereleases.blogspot.com/2015/12/stable-channel-update.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00016.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-12/msg00017.htmlhttp://www.debian.org/security/2015/dsa-3415http://www.securityfocus.com/bid/78416http://www.securitytracker.com/id/1034298http://www.ubuntu.com/usn/USN-2825-1https://code.google.com/p/chromium/issues/detail?id=491660https://codereview.chromium.org/1187173005https://security.gentoo.org/glsa/201603-09
2015-12-06
Published