CVE-2015-1290: Buffer Overflow
Published Jan 9, 2018
·Updated
The Google V8 engine, as used in Google Chrome before 44.0.2403.89 and QtWebEngineCore in Qt before 5.5.1, allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted web site.
Affected Software
3 affected components
Google Chrome<44.0.2403.89
Qt QT<5.5.1
openSUSE Leap=42.1
Remediation
Patch Available
Event History
Jan 9, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-1290?
The severity of CVE-2015-1290 is critical with a CVSS score of 8.8.
2
Which software versions are affected by CVE-2015-1290?
Google Chrome versions before 44.0.2403.89 and Qt versions before 5.5.1 are affected by CVE-2015-1290.
3
How can a remote attacker exploit CVE-2015-1290?
A remote attacker can exploit CVE-2015-1290 by causing a denial of service (memory corruption) or executing arbitrary code via a crafted web site.
4
Are there any fixes or patches available for CVE-2015-1290?
Yes, fixes or patches are available for CVE-2015-1290. Please refer to the provided references for more information.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2015-1290?
The Common Weakness Enumeration (CWE) ID for CVE-2015-1290 is CWE-119.