The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Components for Unicode (ICU), as used in Google Chrome before 44.0.2403.89, mishandles converter names with initial x- substrings, which allows remote attackers to cause a denial of service (read of uninitialized memory) or possibly have unspecified other impact via a crafted file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Chrome | * | 43.0.2357.134 (including) | |
Red Hat Enterprise Linux 6 Supplementary | RedHat | chromium-browser-0:44.0.2403.89-1.el6 | * |
Chromium-browser | Ubuntu | devel | * |
Chromium-browser | Ubuntu | precise | * |
Chromium-browser | Ubuntu | trusty | * |
Chromium-browser | Ubuntu | upstream | * |
Chromium-browser | Ubuntu | utopic | * |
Chromium-browser | Ubuntu | vivid | * |
Chromium-browser | Ubuntu | wily | * |
Icu | Ubuntu | devel | * |
Icu | Ubuntu | trusty | * |
Icu | Ubuntu | upstream | * |
Icu | Ubuntu | vivid | * |
Icu | Ubuntu | vivid/stable-phone-overlay | * |
Icu | Ubuntu | wily | * |
Oxide-qt | Ubuntu | devel | * |
Oxide-qt | Ubuntu | trusty | * |
Oxide-qt | Ubuntu | upstream | * |
Oxide-qt | Ubuntu | utopic | * |
Oxide-qt | Ubuntu | vivid | * |
Oxide-qt | Ubuntu | vivid/stable-phone-overlay | * |
Oxide-qt | Ubuntu | wily | * |