Lucene search

K
ubuntucveUbuntu.comUB:CVE-2015-1295
HistorySep 03, 2015 - 12:00 a.m.

CVE-2015-1295

2015-09-0300:00:00
ubuntu.com
ubuntu.com
14

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.011

Percentile

84.6%

Multiple use-after-free vulnerabilities in the PrintWebViewHelper class in
components/printing/renderer/print_web_view_helper.cc in Google Chrome
before 45.0.2454.85 allow user-assisted remote attackers to cause a denial
of service or possibly have unspecified other impact by triggering nested
IPC messages during preparation for printing, as demonstrated by messages
associated with PDF documents in conjunction with messages about printer
capabilities.

Notes

Author Note
chrisccoulson Oxide does not use the printing component
OSVersionArchitecturePackageVersionFilename
ubuntu14.04noarchchromium-browser< 45.0.2454.85-0ubuntu0.14.04.1.1097UNKNOWN
ubuntu15.04noarchchromium-browser< 45.0.2454.85-0ubuntu0.15.04.1.1181UNKNOWN
ubuntu15.10noarchchromium-browser< 45.0.2454.85-0ubuntu1.1198UNKNOWN

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.011

Percentile

84.6%