UBUNTU-CVE-2014-7940
Dashboard / Vulnerabilities / UBUNTU-CVE-2014-7940
UBUNTU-CVE-2014-7940
Summary:
Details: The collator implementation in i18n/ucol.cpp in International Components for Unicode (ICU) 52 through SVN revision 293126, as used in Google Chrome before 40.0.2214.91, does not initialize memory for a data structure, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted character sequence.
References: https://ubuntu.com/security/CVE-2014-7940, https://chromium.googlesource.com/chromium/src.git/+/87feb77547781a22b31c423bc0d57b7dca32d5b8, https://chromium.googlesource.com/chromium/deps/icu/+/866ff696e9022a6000afbab516fba62cfa306075, http://googlechromereleases.blogspot.com/2015/01/stable-update.html, https://ubuntu.com/security/notices/USN-2476-1, https://ubuntu.com/security/notices/USN-2522-1, https://www.cve.org/CVERecord?id=CVE-2014-7940
Affected packages
Package
Name: chromium-browser
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
