CVE-2015-1277: Use After Free
Last updated 24 July 2024
Other sources
Use-after-free vulnerability in the accessibility implementation in Go ...
— Debian
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2015-1277?
CVE-2015-1277 is a use-after-free vulnerability in the accessibility implementation in Google Chrome before version 44.0.2403.89.
How does CVE-2015-1277 impact users?
CVE-2015-1277 allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging lack of certain validity checks for accessibility-tree data structures.
Which software versions are affected by CVE-2015-1277?
Google Chrome versions before 44.0.2403.89, Debian Linux 8.0, Redhat Enterprise Linux versions 6.0 and 6.7z, OpenSUSE versions 13.1 and 13.2, Chromium browser on Ubuntu Trusty, Vivid, and Wily, and Oxide-qt on Ubuntu Trusty, Vivid, and Wily.
What is the severity of CVE-2015-1277?
CVE-2015-1277 has a severity rating of 7.5 (high).
Are there any remedies available for CVE-2015-1277?
Remedies are available in the form of updated versions for Google Chrome, Chromium browser, and Oxide-qt on affected platforms.