Security Advisory

CVE-2014-1733

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2014-04-26 10:00:00
Last updated 2024-08-06 09:50:11
Assigner Chrome
State PUBLISHED

Description

The PointerCompare function in codegen.cc in Seccomp-BPF, as used in Google Chrome before 34.0.1847.131 on Windows and OS X and before 34.0.1847.132 on Linux, does not properly merge blocks, which might allow remote attackers to bypass intended sandbox restrictions by leveraging renderer access.