Google Chrome Heap Buffer Overflow Vulnerability (CVE-2014-3157)
Release date:
Updated on:
Affected Systems:
Google Chrome <35.0.1916.153
Description:
--------------------------------------------------------------------------------
Bugtraq id: 67972
CVE (CAN) ID: CVE-2014-3157
Google Chrome is a Web browser tool developed by Google.
In versions earlier than Chrome 35.0.1916.153, The FFmpegVideoDecoder: GetVideoBuffer function in media/filters/ffmpeg_video_decoder.cc has the heap buffer overflow vulnerability, which can cause remote attackers to cause DOS.
<* Source: vendor
Link: http://secunia.com/advisories/58585/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Google
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://googlechromereleases.blogspot.com/2014/06/stable-channel-update.html
Install Google Chrome in Ubuntu 14.04 LTS
Solution to Chrome dependency installation in Ubuntu 13.04
Install Chrome in openSUSE
Install Google Chrome 35 Beta for Linux Users
Install Google Chrome in CentOS 6.x
Chrome details: click here
Chrome: click here
This article permanently updates the link address: