Vulnerability CVE-2014-7906: Information

Description

Use-after-free vulnerability in the Pepper plugins in Google Chrome before 39.0.2171.65 allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted Flash content that triggers an attempted PepperMediaDeviceManager access outside of the object's lifetime.

Severity: HIGH (7.5)

Published: Nov. 19, 2014
Modified: Nov. 7, 2023
Error type identifier: CWE-399

Fixed packages

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
      End including
      39.0.2171.45