Security Advisory

CVE-2014-3190

7.5

Vulnerability Description

Use-after-free vulnerability in the Event::currentTarget function in core/events/Event.cpp in Blink, as used in Google Chrome before 38.0.2125.101, allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted JavaScript code that accesses the path property of an Event object.
Published Date October 8, 2014
Official Source NIST NVD Advisory