CVE-2014-1710 describes a boundary error in Google Chrome OS versions prior to 33.0.1750.152, specifically within the AsyncPixelTransfersCompletedQuery::End function. This flaw allows remote attackers to cause a denial of service through GPU command-buffer memory corruption, with potential for other unspecified impacts. Rated with a CVSS score of 7.5, it is a network-exploitable vulnerability with low attack complexity, leading to partial confidentiality, integrity, and availability impacts. There is no evidence of active exploitation, public exploit code, or inclusion in the KEV catalog, and community discussion is minimal.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 33.0.1750.149CPE matchmatch criteria | cpe:2.3:o:google:chrome_os:*:*:*:*:*:*:*:* | ||
33.0.1750.2CPE matchmatch criteria | cpe:2.3:o:google:chrome_os:33.0.1750.2:*:*:*:*:*:*:* | ||
33.0.1750.5CPE matchmatch criteria | cpe:2.3:o:google:chrome_os:33.0.1750.5:*:*:*:*:*:*:* | ||
33.0.1750.16CPE matchmatch criteria | cpe:2.3:o:google:chrome_os:33.0.1750.16:*:*:*:*:*:*:* | ||
33.0.1750.29CPE matchmatch criteria | cpe:2.3:o:google:chrome_os:33.0.1750.29:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.