CVE-2014-3152

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
21/05/2014
Last modified:
12/04/2025

Description

Integer underflow in the LCodeGen::PrepareKeyedOperand function in arm/lithium-codegen-arm.cc in Google V8 before 3.25.28.16, as used in Google Chrome before 35.0.1916.114, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a negative key value.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:21:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:22:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:*:*:*:*:*:*:*:* 3.25.28 (including)
cpe:2.3:a:google:v8:3.25.0:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.1:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.2:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.3:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.4:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.5:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.6:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.7:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.8:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.9:*:*:*:*:*:*:*
cpe:2.3:a:google:v8:3.25.10:*:*:*:*:*:*:*