CVE-2015-1217 describes a type confusion vulnerability in the V8LazyEventListener::prepareListenerObject function within the Blink V8 bindings, affecting Google Chrome versions prior to 41.0.2272.76, as well as products from Canonical and Red Hat. This vulnerability carries a CVSS score of 7.5, indicating high severity, and could allow remote attackers to cause a denial of service or potentially other unspecified impacts with low attack complexity. There is no evidence of active exploitation, nor are there known public exploits in Metasploit, Nuclei, or ExploitDB. However, the vulnerability has garnered some community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 40.0.2214.115CPE matchmatch criteria | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* | ||
6.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_desktop_supplementary:6.0:*:*:*:*:*:*:* | ||
6.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_server_supplementary:6.0:*:*:*:*:*:*:* | ||
6.6.zCPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_server_supplementary_eus:6.6.z:*:*:*:*:*:*:* | ||
6.0CPE matchmatch criteria | cpe:2.3:o:redhat:enterprise_linux_workstation_supplementary:6.0:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.