« Volver al listado

CVE-2014-1710

Estado: ModificadaAlta (7.5)—

The AsyncPixelTransfersCompletedQuery::End function in gpu/command_buffer/service/query_manager.cc in Google Chrome, as used in Google Chrome OS before 33.0.1750.152, does not check whether a certain position is within the bounds of a shared-memory segment, which allows remote attackers to cause a denial of service (GPU command-buffer memory corruption) or possibly have unspecified other impact via unknown vectors.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2014-1710",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 7.5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "HIGH",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 10,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "chrome-cve-admin@google.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2014-03-16T14:06:45.570",
  "references": [
    {
      "url": "http://googlechromereleases.blogspot.com/2014/03/stable-channel-update-for-chrome-os_14.html",
      "source": "chrome-cve-admin@google.com"
    },
    {
      "url": "https://code.google.com/p/chromium/issues/detail?id=351852",
      "source": "chrome-cve-admin@google.com"
    },
    {
      "url": "https://src.chromium.org/viewvc/chrome?revision=256723&view=revision",
      "source": "chrome-cve-admin@google.com"
    },
    {
      "url": "https://src.chromium.org/viewvc/chrome?revision=256918&view=revision",
      "source": "chrome-cve-admin@google.com"
    },
    {
      "url": "http://googlechromereleases.blogspot.com/2014/03/stable-channel-update-for-chrome-os_14.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://code.google.com/p/chromium/issues/detail?id=351852",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://src.chromium.org/viewvc/chrome?revision=256723&view=revision",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://src.chromium.org/viewvc/chrome?revision=256918&view=revision",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-119"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "The AsyncPixelTransfersCompletedQuery::End function in gpu/command_buffer/service/query_manager.cc in Google Chrome, as used in Google Chrome OS before 33.0.1750.152, does not check whether a certain position is within the bounds of a shared-memory segment, which allows remote attackers to cause a denial of service (GPU command-buffer memory corruption) or possibly have unspecified other impact via unknown vectors."
    },
    {
      "lang": "es",
      "value": "La función AsyncPixelTransfersCompletedQuery::End en gpu/command_buffer/service/query_manager.cc en Google Chrome, utilizado en Google Chrome OS anterior a 33.0.1750.152, no comprueba si cierta posición está dentro de los límites de un segmento de memoria compartida, lo que permite a atacantes remotos causar una denegación de servicio (corrupción de memoria de comando de buffer de GPU) o posiblemente tener otro impacto no especificado a través de vectores desconocidos."
    }
  ],
  "lastModified": "2026-06-17T00:05:25.233",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:google:chrome_os:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "439AB7FE-C97B-437D-8B63-5C578083F888",
              "versionEndIncluding": "33.0.1750.149"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "80F12F19-8FA7-4A85-9ADE-59E9E9EE927B"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.5:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DE878C97-75CD-47E7-A986-646158D180A8"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.16:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7D8AFB09-4DE2-44ED-BBAA-9770FDE16FF2"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.29:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D2C579B9-1410-471F-98BA-DC050DF8BFED"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.51:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "545E151A-1915-4E8F-823B-C7DA2EE5D9C1"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.58:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "2036F2BE-4349-4034-8717-1F9EF208E482"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.70:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "B9FE324C-4A7D-4610-8106-9DCE8327058D"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.93:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "65B2F712-3BD9-492E-AF21-66911756750C"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.112:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "62E9D29C-CFF9-45C2-B063-5F29A368B43F"
            },
            {
              "criteria": "cpe:2.3:o:google:chrome_os:33.0.1750.124:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DA0C06F9-5739-4AF3-BEA3-AC404DE944BD"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "chrome-cve-admin@google.com"
}