First published: Thu Jul 23 2015(Updated: )
Last updated 15 January 2025
Credit: chrome-cve-admin@google.com cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/expat | 2.2.10-2+deb11u5 2.2.10-2+deb11u6 2.5.0-1+deb12u1 2.6.4-1 | |
Android | ||
Google Chrome | <=43.0.2357.134 | |
Debian (libexpat1) | <=2.1.0 | |
Python Babel Localedata | >=2.7.0<2.7.12 | |
Python Babel Localedata | >=3.3.0<3.3.7 | |
Python Babel Localedata | >=3.4.0<3.4.5 | |
Python Babel Localedata | >=3.5.0<3.5.2 | |
Debian | =7.0 | |
Debian | =8.0 | |
Debian | =9.0 | |
Ubuntu | =12.04 | |
Ubuntu | =14.04 | |
Ubuntu | =15.04 | |
SUSE Linux Enterprise Debuginfo | =11-sp4 | |
SUSE Studio Onsite | =1.3 | |
openSUSE | =42.1 | |
openSUSE | =13.1 | |
openSUSE | =13.2 | |
SUSE Linux Enterprise Desktop with Beagle | =12 | |
SUSE Linux Enterprise Desktop with Beagle | =12-sp1 | |
SUSE Linux Enterprise Server | =11-sp4 | |
SUSE Linux Enterprise Server | =12 | |
SUSE Linux Enterprise Server | =12-sp1 | |
SUSE Linux Enterprise Software Development Kit | =11-sp4 | |
SUSE Linux Enterprise Software Development Kit | =12 | |
SUSE Linux Enterprise Software Development Kit | =12-sp1 | |
Oracle Solaris SPARC | =10 | |
Oracle Solaris SPARC | =11.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1283 is classified as a medium severity vulnerability primarily affecting Expat and related applications.
To fix CVE-2015-1283, update Expat to version 2.1.1 or higher and ensure all affected software, including Google Chrome, is patched to mitigate the risk.
CVE-2015-1283 impacts multiple products including Google Chrome versions below 44.0.2403.89 and Expat versions up to 2.1.0.
CVE-2015-1283 represents an integer overflow vulnerability leading to potential heap-based buffer overflows and denial of service.
Yes, CVE-2015-1283 can be exploited remotely by attackers to trigger a denial of service condition.