Description
The DragImage::create function in platform/DragImage.cpp in Blink, as used in Google Chrome before 41.0.2272.76, does not initialize memory for image drawing, which allows remote attackers to have an unspecified impact by triggering a failed image decoding, as demonstrated by an image for which the default orientation cannot be used.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2015-1368 | The DragImage::create function in platform/DragImage.cpp in Blink, as used in Google Chrome before 41.0.2272.76, does not initialize memory for image drawing, which allows remote attackers to have an unspecified impact by triggering a failed image decoding, as demonstrated by an image for which the default orientation cannot be used. |
Ubuntu USN |
USN-2521-1 | Oxide vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2024-08-06T04:33:20.865Z
Reserved: 2015-01-21T00:00:00.000Z
Link: CVE-2015-1227
No data.
Status : Modified
Published: 2015-03-09T00:59:20.420
Modified: 2026-05-06T22:30:45.220
Link: CVE-2015-1227
OpenCVE Enrichment
No data.
EUVD
Ubuntu USN