Lucene search

K
cvelistChromeCVELIST:CVE-2015-1228
HistoryMar 09, 2015 - 12:00 a.m.

CVE-2015-1228

2015-03-0900:00:00
Chrome
www.cve.org
9

AI Score

6.8

Confidence

High

EPSS

0.019

Percentile

88.8%

The RenderCounter::updateCounter function in core/rendering/RenderCounter.cpp in Blink, as used in Google Chrome before 41.0.2272.76, does not force a relayout operation and consequently does not initialize memory for a data structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted Cascading Style Sheets (CSS) token sequence.