The StoreBuffer::ExemptPopularPages function in store-buffer.cc in Google V8 before 3.22.24.16, as used in Google Chrome before 32.0.1700.102, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors that trigger incorrect handling of "popular pages."
{
"binaries": [
{
"binary_version": "33.0.1750.152-0ubuntu1~pkg995.1",
"binary_name": "chromium-browser"
},
{
"binary_version": "33.0.1750.152-0ubuntu1~pkg995.1",
"binary_name": "chromium-browser-l10n"
},
{
"binary_version": "33.0.1750.152-0ubuntu1~pkg995.1",
"binary_name": "chromium-chromedriver"
},
{
"binary_version": "33.0.1750.152-0ubuntu1~pkg995.1",
"binary_name": "chromium-codecs-ffmpeg"
},
{
"binary_version": "33.0.1750.152-0ubuntu1~pkg995.1",
"binary_name": "chromium-codecs-ffmpeg-extra"
}
],
"availability": "No subscription required"
}