CVE-2015-1220
Use-after-free vulnerability in the GIFImageReader::parseData function in platform/image-decoders/gif/GIFImageReader.cpp in Blink, as used in Google Chrome before 41.0.2272.76, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted frame size in a GIF image.
- Redhat Enterprise Linux Desktop Supplementary
- = 6.0
- Redhat Enterprise Linux Server Supplementary
- = 6.0
- Redhat Enterprise Linux Server Supplementary Eus
- = 6.6.z
- Redhat Enterprise Linux Workstation Supplementary
- = 6.0
- CVSS 2.0
- 6.8 MEDIUM
- EPSS
- 1.9% (77th percentile)
- NVD status
- Modified
- Published
- 2015-03-09
CVE-2015-1220 at NVD
1 known exploit for CVE-2015-1220
Proof-of-concept code and exploit modules indexed by Sploitus