---
title: "CVE-2014-1730\n    | Ubuntu"
description: Ubuntu is an open source software operating system that runs from the
  desktop, to the cloud, to all your internet connected things.
url: https://ubuntu.com/security/CVE-2014-1730?format=md
keywords: index, follow
---

# CVE-2014-1730

Publication date 26 April 2014

Last updated 24 July 2024

---

Ubuntu priority

**Medium**

[Why this priority?](https://ubuntu.com/security/cves/about#priority )

Toggle side navigation

## Description

Google V8, as used in Google Chrome before 34.0.1847.131 on Windows and OS
X and before 34.0.1847.132 on Linux, does not properly store
internationalization metadata, which allows remote attackers to bypass
intended access restrictions by leveraging "type confusion" and reading
property values, related to i18n.js and runtime.cc.

[Read the notes from the security team](https://ubuntu.com/security/CVE-2014-1730?format=md#notes)

## Status

Show unmaintained releases

| Package | Ubuntu Release | Status |
| --- | --- | --- |
| chromium-browser | 18.10 cosmic | Fixed 35.0.1916.153-0ubuntu1~pkg1029 |
| 18.04 LTS bionic | Fixed 35.0.1916.153-0ubuntu1~pkg1029 |
| 17.10 artful | Fixed 35.0.1916.153-0ubuntu1~pkg1029 |
| 17.04 zesty | Fixed 35.0.1916.153-0ubuntu1~pkg1029 |
| 16.10 yakkety | Fixed 35.0.1916.153-0ubuntu1~pkg1029 |
| 16.04 LTS xenial | Fixed 35.0.1916.153-0ubuntu1~pkg1029 |
| 15.10 wily | Fixed 35.0.1916.153-0ubuntu1~pkg1029 |
| 15.04 vivid | Fixed 35.0.1916.153-0ubuntu1~pkg1029 |
| 14.10 utopic | Fixed 35.0.1916.153-0ubuntu1~pkg1029 |
| 14.04 LTS trusty | Fixed 36.0.1985.125-0ubuntu1.14.04.0~pkg1029 |
| 13.10 saucy | Ignored end of life |
| 12.10 quantal | Ignored end of life |
| 12.04 LTS precise | Fixed 36.0.1985.125-0ubuntu1.12.04.0~pkg897 |
| 10.04 LTS lucid | Ignored end of life |
| libv8 | 18.10 cosmic | Not in release |
| 18.04 LTS bionic | Not in release |
| 17.10 artful | Not in release |
| 17.04 zesty | Not in release |
| 16.10 yakkety | Not in release |
| 16.04 LTS xenial | Not in release |
| 15.10 wily | Not in release |
| 15.04 vivid | Not in release |
| 14.10 utopic | Not in release |
| 14.04 LTS trusty | Not in release |
| 13.10 saucy | Ignored end of life |
| 12.10 quantal | Ignored end of life |
| 12.04 LTS precise | Ignored end of life |
| 10.04 LTS lucid | Ignored end of life |
| libv8-3.14 | 18.10 cosmic | Ignored end of life |
| 18.04 LTS bionic | Ignored end of standard support |
| 17.10 artful | Ignored end of life |
| 17.04 zesty | Ignored end of life |
| 16.10 yakkety | Ignored end of life |
| 16.04 LTS xenial | Ignored end of standard support |
| 15.10 wily | Ignored end of life |
| 15.04 vivid | Ignored end of life |
| 14.10 utopic | Ignored end of life |
| 14.04 LTS trusty | Not in release |
| 13.10 saucy | Ignored end of life |
| 12.10 quantal | Not in release |
| 12.04 LTS precise | Not in release |
| 10.04 LTS lucid | Not in release |
| oxide-qt | 18.10 cosmic | Not in release |
| 18.04 LTS bionic | Not in release |
| 17.10 artful | Fixed 1.1.0~bzr540-0ubuntu1 |
| 17.04 zesty | Fixed 1.1.0~bzr540-0ubuntu1 |
| 16.10 yakkety | Fixed 1.1.0~bzr540-0ubuntu1 |
| 16.04 LTS xenial | Fixed 1.1.0~bzr540-0ubuntu1 |
| 15.10 wily | Fixed 1.1.0~bzr540-0ubuntu1 |
| 15.04 vivid | Fixed 1.1.0~bzr540-0ubuntu1 |
| 14.10 utopic | Fixed 1.1.0~bzr540-0ubuntu1 |
| 14.04 LTS trusty | Fixed 1.0.4-0ubuntu0.14.04.1 |
| 13.10 saucy | Not in release |
| 12.10 quantal | Not in release |
| 12.04 LTS precise | Not in release |
| 10.04 LTS lucid | Not in release |

---

* [How can I get the fixes?](https://ubuntu.com/security/cves/about#security)
* [What do statuses mean?](https://ubuntu.com/security/cves/about#statuses)

## Notes

---

### [mikesalvatore](https://launchpad.net/~mikesalvatore)

The Ubuntu Security Team does not support libv8

## References

* [MITRE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1730)
* [NVD](https://nvd.nist.gov/vuln/detail/CVE-2014-1730)
* [Launchpad](https://launchpad.net/bugs/cve/CVE-2014-1730)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2014-1730)

### Related Ubuntu Security Notices (USN)

+ [USN-2298-1](https://usn.ubuntu.com/USN-2298-1)
+ Oxide vulnerabilities
+ 23 July 2014

### Other references

* <https://code.google.com/p/v8/source/detail?r=20595>
* <https://code.google.com/p/v8/source/detail?r=20593>
* <https://code.google.com/p/v8/source/detail?r=20388>
* <https://code.google.com/p/v8/source/detail?r=20377>
* <https://code.google.com/p/v8/source/detail?r=20375>
* <https://code.google.com/p/chromium/issues/detail?id=354967>
* <http://googlechromereleases.blogspot.com/2014/04/stable-channel-update_24.html>
* <https://www.cve.org/CVERecord?id=CVE-2014-1730>
