CVE-2014-1744
Last modified
CVE-2014-1744 is a vulnerability of currently unknown severity. Integer overflow in the AudioInputRendererHost::OnCreateStream function in content/browser/renderer_host/media/audio_input_renderer_host.cc in Google Chrome before 35.0.1916.114 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a large shared-memory allocation.. EPSS estimates a 1.65% chance of exploitation in the next 30 days.
Description
Integer overflow in the AudioInputRendererHost::OnCreateStream function in content/browser/renderer_host/media/audio_input_renderer_host.cc in Google Chrome before 35.0.1916.114 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a large shared-memory allocation.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Chrome | <= 35.0.1916.113 | |
| Chrome | 35.0.1916.0 | |
| Chrome | 35.0.1916.1 | |
| Chrome | 35.0.1916.2 | |
| Chrome | 35.0.1916.3 | |
| Chrome | 35.0.1916.4 | |
| Chrome | 35.0.1916.5 | |
| Chrome | 35.0.1916.6 | |
| Chrome | 35.0.1916.7 | |
| Chrome | 35.0.1916.8 | |
| Chrome | 35.0.1916.9 | |
| Chrome | 35.0.1916.10 | |
| Chrome | 35.0.1916.11 | |
| Chrome | 35.0.1916.13 | |
| Chrome | 35.0.1916.14 | |
| Chrome | 35.0.1916.15 | |
| Chrome | 35.0.1916.17 | |
| Chrome | 35.0.1916.18 | |
| Chrome | 35.0.1916.19 | |
| Chrome | 35.0.1916.20 | |
| Chrome | 35.0.1916.21 | |
| Chrome | 35.0.1916.22 | |
| Chrome | 35.0.1916.23 | |
| Chrome | 35.0.1916.27 | |
| Chrome | 35.0.1916.31 | |
| Chrome | 35.0.1916.32 | |
| Chrome | 35.0.1916.33 | |
| Chrome | 35.0.1916.34 | |
| Chrome | 35.0.1916.35 | |
| Chrome | 35.0.1916.36 | |
| Chrome | 35.0.1916.37 | |
| Chrome | 35.0.1916.38 | |
| Chrome | 35.0.1916.39 | |
| Chrome | 35.0.1916.40 | |
| Chrome | 35.0.1916.41 | |
| Chrome | 35.0.1916.42 | |
| Chrome | 35.0.1916.43 | |
| Chrome | 35.0.1916.44 | |
| Chrome | 35.0.1916.45 | |
| Chrome | 35.0.1916.46 | |
| Chrome | 35.0.1916.47 | |
| Chrome | 35.0.1916.48 | |
| Chrome | 35.0.1916.49 | |
| Chrome | 35.0.1916.51 | |
| Chrome | 35.0.1916.52 | |
| Chrome | 35.0.1916.54 | |
| Chrome | 35.0.1916.56 | |
| Chrome | 35.0.1916.57 | |
| Chrome | 35.0.1916.59 | |
| Chrome | 35.0.1916.61 |
Showing 50 of 80 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-1744?
How severe is CVE-2014-1744?
How do I fix CVE-2014-1744?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2014
- CVE-2014-1738The raw_cmd_copyout function in drivers/block/floppy.c in th…
- CVE-2014-1739The media_device_enum_entities function in drivers/media/med…
- CVE-2014-1740Multiple use-after-free vulnerabilities in net/websockets/we…
- CVE-2014-1741Multiple integer overflows in the replace-data functionality…
- CVE-2014-1742Use-after-free vulnerability in the FrameSelection::updateAp…
- CVE-2014-1743Use-after-free vulnerability in the StyleElement::removedFro…
- CVE-2014-1745Use-after-free vulnerability in the SVG implementation in Bl…7.1
- CVE-2014-1746The InMemoryUrlProtocol::Read function in media/filters/in_m…
- CVE-2014-1747Cross-site scripting (XSS) vulnerability in the DocumentLoad…
- CVE-2014-1748The ScrollView::paint function in platform/scroll/ScrollView…
- CVE-2014-1749Multiple unspecified vulnerabilities in Google Chrome before…
- CVE-2014-1750Open redirect vulnerability in nokia-mapsplaces.php in the N…
Are you affected by CVE-2014-1744?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
