01642 06 11 11 Arrange Call

Use-after-free vulnerability in Blink's DOM implementation allows for remote code execution

CVE-2014-7930 · HIGH

CVE-2014-7930

Use-after-free vulnerability in core/events/TreeScopeEventContext.cpp in the DOM implementation in Blink, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code that triggers improper maintenance of TreeScope data.

Learn more about our Cis Benchmark Audit For Google Chrome.