Input validation error in Debian Linux and Google Chrome - CVE-2014-3165
Published: August 13, 2014 / Updated: August 10, 2020
Debian Linux
Google Chrome
Detailed vulnerability description
The vulnerability allows remote attackers to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input. A remote attacker can cause a denial of service or possibly have unspecified other impact via vectors that trigger an unexpectedly long lifetime of a temporary object during method completion.
How to mitigate CVE-2014-3165
Sources
- http://googlechromereleases.blogspot.com/2014/08/stable-channel-update.html
- http://secunia.com/advisories/59904
- http://secunia.com/advisories/60798
- http://security.gentoo.org/glsa/glsa-201408-16.xml
- http://www.debian.org/security/2014/dsa-3039
- http://www.securityfocus.com/bid/69201
- http://www.securitytracker.com/id/1030732
- https://code.google.com/p/chromium/issues/detail?id=390174
- https://exchange.xforce.ibmcloud.com/vulnerabilities/95247
- https://src.chromium.org/viewvc/blink?revision=177359&view=revision