CVE-2015-1243: Use After Free
Use-after-free vulnerability in the MutationObserver::disconnect function in core/dom/MutationObserver.cpp in the DOM implementation in Blink, as used in Google Chrome before 42.0.2311.135, allows remote attackers to cause a denial of service or possibly have unspecified other impact by triggering an attempt to unregister a MutationObserver object that is not currently registered.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1243?
CVE-2015-1243 has a high severity rating due to its potential for remote denial of service and unspecified impacts.
How do I fix CVE-2015-1243?
To fix CVE-2015-1243, update Google Chrome to version 42.0.2311.135 or later, or apply relevant patches for affected operating systems.
Which software versions are affected by CVE-2015-1243?
CVE-2015-1243 affects Google Chrome versions earlier than 42.0.2311.135 and specific versions of Debian and Ubuntu Linux distributions.
What type of vulnerability is CVE-2015-1243?
CVE-2015-1243 is classified as a use-after-free vulnerability in the MutationObserver functionality within the Blink engine.
Can CVE-2015-1243 be exploited remotely?
Yes, CVE-2015-1243 can be exploited remotely to cause denial of service conditions.