CVE-2015-6792: Critical severity google chrome (trace event) vulnerability
Published Dec 24, 2015
·Updated
The MIDI subsystem in Google Chrome before 47.0.2526.106 does not properly handle the sending of data, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors, related to midimanager.cc, midimanageralsa.cc, and midimanagermac.cc, a different vulnerability than CVE-2015-8664.
Affected Software
1 affected component
Google Chrome<=47.0.2526.80
Event History
Dec 24, 2015
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6792?
CVE-2015-6792 has a critical severity score of 10.
2
How do I fix CVE-2015-6792?
To fix CVE-2015-6792, update Google Chrome to version 47.0.2526.106 or later.
3
What type of attack is associated with CVE-2015-6792?
CVE-2015-6792 allows remote attackers to execute arbitrary code or cause a denial of service.
4
Which versions of Google Chrome are affected by CVE-2015-6792?
CVE-2015-6792 affects versions of Google Chrome prior to 47.0.2526.106.
5
What components are related to CVE-2015-6792?
CVE-2015-6792 is related to the MIDI subsystem and specifically to midi_manager.cc and midi_manager_alsa.cc.