CVE Database
/

CVE-2014-3198

Back to search

CVE-2014-3198

Published: Oct 8, 2014

Modified: Aug 6, 2024

PUBLISHED

Description

The Instance::HandleInputEvent function in pdf/instance.cc in the PDFium component in Google Chrome before 38.0.2125.101 interprets a certain -1 value as an index instead of a no-visible-page error code, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2014:1626
vendor-advisory
x_refsource_REDHAT
https://crbug.com/415307
x_refsource_CONFIRM
70273
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now