CVE-2014-3177
Google Chrome before 37.0.2062.94 does not properly handle the interaction of extensions, IPC, the sync API, and Google V8, which allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2014-3176.
- Affected products
- Alt Linux, Google Chrome, Google V8, Suse
- Google Chrome
- ≤ 37.0.2062.93, 37.0.2062.0, 37.0.2062.1, 37.0.2062.2, 37.0.2062.3, 37.0.2062.4, 37.0.2062.5, 37.0.2062.6, 37.0.2062.7, 37.0.2062.8, 37.0.2062.9, 37.0.2062.10, 37.0.2062.11, 37.0.2062.12, 37.0.2062.13, 37.0.2062.14, 37.0.2062.15, 37.0.2062.16, 37.0.2062.17, 37.0.2062.18, 37.0.2062.19, 37.0.2062.20, 37.0.2062.21, 37.0.2062.22, 37.0.2062.23, 37.0.2062.24, 37.0.2062.25, 37.0.2062.26, 37.0.2062.27, 37.0.2062.28, 37.0.2062.29, 37.0.2062.30, 37.0.2062.31, 37.0.2062.32, 37.0.2062.33, 37.0.2062.34, 37.0.2062.35, 37.0.2062.36, 37.0.2062.37, 37.0.2062.39
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 3.9% (89th percentile)
- Weakness
- CWE-94
- NVD status
- Modified
- Published
- 2014-08-27
CVE-2014-3177 at NVD
No indexed exploits for CVE-2014-3177 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2014-3177 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.