CVE-2014-3187
Last modified
CVE-2014-3187 is a vulnerability of currently unknown severity. Google Chrome before 37.0.2062.60 and 38.x before 38.0.2125.59 on iOS does not properly restrict processing of (1) facetime:// and (2) facetime-audio:// URLs, which allows remote attackers to obtain video and audio data from a device via a crafted web site.. EPSS estimates a 0.81% chance of exploitation in the next 30 days.
Description
Google Chrome before 37.0.2062.60 and 38.x before 38.0.2125.59 on iOS does not properly restrict processing of (1) facetime:// and (2) facetime-audio:// URLs, which allows remote attackers to obtain video and audio data from a device via a crafted web site.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Chrome | <= 37.0.2062.59 | |
| Chrome | 37.0.2062.0 | |
| Chrome | 37.0.2062.1 | |
| Chrome | 37.0.2062.2 | |
| Chrome | 37.0.2062.3 | |
| Chrome | 37.0.2062.4 | |
| Chrome | 37.0.2062.5 | |
| Chrome | 37.0.2062.6 | |
| Chrome | 37.0.2062.10 | |
| Chrome | 37.0.2062.11 | |
| Chrome | 37.0.2062.12 | |
| Chrome | 37.0.2062.13 | |
| Chrome | 37.0.2062.14 | |
| Chrome | 37.0.2062.15 | |
| Chrome | 37.0.2062.16 | |
| Chrome | 37.0.2062.17 | |
| Chrome | 37.0.2062.18 | |
| Chrome | 37.0.2062.19 | |
| Chrome | 37.0.2062.20 | |
| Chrome | 37.0.2062.21 | |
| Chrome | 37.0.2062.22 | |
| Chrome | 37.0.2062.23 | |
| Chrome | 37.0.2062.24 | |
| Chrome | 37.0.2062.25 | |
| Chrome | 37.0.2062.26 | |
| Chrome | 37.0.2062.27 | |
| Chrome | 37.0.2062.28 | |
| Chrome | 37.0.2062.29 | |
| Chrome | 37.0.2062.30 | |
| Chrome | 37.0.2062.31 | |
| Chrome | 37.0.2062.32 | |
| Chrome | 37.0.2062.33 | |
| Chrome | 37.0.2062.34 | |
| Chrome | 37.0.2062.35 | |
| Chrome | 37.0.2062.36 | |
| Chrome | 37.0.2062.37 | |
| Chrome | 37.0.2062.39 | |
| Chrome | 37.0.2062.43 | |
| Chrome | 37.0.2062.44 | |
| Chrome | 37.0.2062.45 | |
| Chrome | 37.0.2062.46 | |
| Chrome | 37.0.2062.47 | |
| Chrome | 37.0.2062.48 | |
| Chrome | 37.0.2062.49 | |
| Chrome | 37.0.2062.50 | |
| Chrome | 37.0.2062.51 | |
| Chrome | 37.0.2062.52 | |
| Chrome | 37.0.2062.53 | |
| Chrome | 37.0.2062.54 | |
| Chrome | 37.0.2062.55 |
Showing 50 of 55 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2014-3187?
How severe is CVE-2014-3187?
How do I fix CVE-2014-3187?
Are you affected by CVE-2014-3187?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
