Date published: 2014-11-19T06:59:08.937-05:00
Date last modified: 2017-09-07T21:29:18.230-04:00
CVSS Score: 7.5
Principal attack vector: NETWORK
Reference URL: http://googlechromereleases.blogspot.com/2014/11/stable-channel-update_18.html
Summary: Multiple use-after-free vulnerabilities in modules/screen_orientation/ScreenOrientationController.cpp in Blink, as used in Google Chrome before 39.0.2171.65, allow remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger improper handling of a detached frame, related to the (1) lock and (2) unlock methods.