CVE-2015-1272
Publication date 22 July 2015
Last updated 24 July 2024
Ubuntu priority
Description
Use-after-free vulnerability in the GPU process implementation in Google Chrome before 44.0.2403.89 allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging the continued availability of a GPUChannelHost data structure during Blink shutdown, related to content/browser/gpu/browser_gpu_channel_host_factory.cc and content/renderer/render_thread_impl.cc.
Status
| Package | Ubuntu Release | Status | 
|---|---|---|
| chromium-browser | ||
| 14.04 LTS trusty | 
                              
                               
                                Fixed 44.0.2403.89-0ubuntu0.14.04.1.1095 
                                
                               
                             |      
                          
                            
                          
                        
                      |
| oxide-qt | ||
| 14.04 LTS trusty | 
                              
                               
                                Fixed 1.8.4-0ubuntu0.14.04.2 
                                
                               
                             |      
                          
                            
                          
                        
                      |
Patch details
| Package | Patch details | 
|---|---|
| chromium-browser | 
References
Related Ubuntu Security Notices (USN)
- USN-2677-1
 - Oxide vulnerabilities
 - 4 August 2015