CVE-2014-3174
Publication date 26 August 2014
Last updated 24 July 2024
Ubuntu priority
modules/webaudio/BiquadDSPKernel.cpp in the Web Audio API implementation in Blink, as used in Google Chrome before 37.0.2062.94, does not properly consider concurrent threads during attempts to update biquad filter coefficients, which allows remote attackers to cause a denial of service (read of uninitialized memory) via crafted API calls.
Status
Package | Ubuntu Release | Status |
---|---|---|
chromium-browser | 14.04 LTS trusty |
Fixed 37.0.2062.94-0ubuntu0.14.04.1~pkg1042
|
oxide-qt | 14.04 LTS trusty |
Fixed 1.1.2-0ubuntu0.14.04.1
|
References
Related Ubuntu Security Notices (USN)
- USN-2326-1
- Oxide vulnerabilities
- 2 September 2014