Google V8, as used in Google Chrome before 34.0.1847.116, does not properly implement lazy deoptimization, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via crafted JavaScript code, as demonstrated by improper handling of a heap allocation of a number outside the Small Integer (aka smi) range.
References
Configurations
Information
Published : 2014-04-09 03:57
Updated : 2017-01-06 18:59
NVD link : CVE-2014-1721
Mitre link : CVE-2014-1721
JSON object : View
CWE
CWE-189
Numeric Errors
Products Affected
- chrome