vendor:
Chrome
by:
Google Security Research
5.5
CVSS
MEDIUM
OOB read vulnerability
CWE
Product Name: Chrome
Affected Version From: Chrome Version 42.0.2311.135
Affected Version To:
Patch Exists: YES
Related CWE:
CPE: a:google:chrome:42.0.2311.135
Platforms Tested: Windows 7
2015
Out-of-Bounds Read Vulnerability in Flash
This vulnerability occurs when processing the SCRIPTDATASTRING object in a Flv file. It leads to an access violation, resulting in a crash.
Mitigation:
Apply the latest updates and patches for Flash.