Google Chrome before 37.0.2062.94 does not properly handle the interaction of extensions, IPC, the sync API, and Google V8, which allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-3176.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2014-08-26 18:55
Updated : 2017-08-28 18:34
NVD link : CVE-2014-3177
Mitre link : CVE-2014-3177
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
- chrome