CVE-2015-1284: Use After Free
Published Jul 23, 2015
·Updated
Last updated 24 July 2024
Other sources
The LocalFrame::isURLAllowed function in core/frame/LocalFrame.cpp in ...
— Debian
Affected Software
8 affected components
debian/chromium-browser
Google Chrome<=43.0.2357.134
openSUSE openSUSE=13.1
openSUSE openSUSE=13.2
redhat Enterprise Linux Desktop Supplementary=6.0
redhat Enterprise Linux Server Supplementary=6.0
redhat Enterprise Linux Server Supplementary=6.7.z
redhat Enterprise Linux Workstation Supplementary=6.0
Remediation
Event History
Jul 23, 2015
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Jan 11, 2024
Data Sourced
via Launchpad·10:09 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·01:06 AM
RemedyDescriptionSeverityAffected Software
Feb 27, 2025
Data Sourced
via Debian·03:15 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the vulnerability CVE-2015-1284 about?
The vulnerability CVE-2015-1284 is about an improper check for a page's maximum number of frames in Blink, allowing for a denial of service attack or possible remote code execution.
2
Which software versions are affected by CVE-2015-1284?
Software versions before 44.0.2403.89 of Google Chrome and Chromium Browser are affected by CVE-2015-1284.
3
What is the severity of the vulnerability CVE-2015-1284?
The severity of the vulnerability CVE-2015-1284 is high with a CVSS score of 7.5.
4
How can I fix the vulnerability CVE-2015-1284?
To fix the vulnerability CVE-2015-1284, update your Google Chrome or Chromium Browser to version 44.0.2403.89 or higher.
5
Where can I find more information about CVE-2015-1284?
You can find more information about CVE-2015-1284 on the CVE website, the Google Chrome Releases blog, and the Ubuntu Security Notices website.