First published: Tue Jan 09 2018(Updated: )
The Google V8 engine, as used in Google Chrome before 44.0.2403.89 and QtWebEngineCore in Qt before 5.5.1, allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted web site.
Credit: cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <44.0.2403.89 | |
Qt Qt | <5.5.1 | |
openSUSE Leap | =42.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2015-1290 is critical with a CVSS score of 8.8.
Google Chrome versions before 44.0.2403.89 and Qt versions before 5.5.1 are affected by CVE-2015-1290.
A remote attacker can exploit CVE-2015-1290 by causing a denial of service (memory corruption) or executing arbitrary code via a crafted web site.
Yes, fixes or patches are available for CVE-2015-1290. Please refer to the provided references for more information.
The Common Weakness Enumeration (CWE) ID for CVE-2015-1290 is CWE-119.