platform/fonts/shaping/HarfBuzzShaper.cpp in Blink, as used in Google Chrome before 43.0.2357.65, does not initialize a certain width field, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted Unicode text.
{ "availability": "No subscription required", "binaries": [ { "binary_version": "43.0.2357.81-0ubuntu0.14.04.1.1089", "binary_name": "chromium-browser" }, { "binary_version": "43.0.2357.81-0ubuntu0.14.04.1.1089", "binary_name": "chromium-browser-l10n" }, { "binary_version": "43.0.2357.81-0ubuntu0.14.04.1.1089", "binary_name": "chromium-chromedriver" }, { "binary_version": "43.0.2357.81-0ubuntu0.14.04.1.1089", "binary_name": "chromium-codecs-ffmpeg" }, { "binary_version": "43.0.2357.81-0ubuntu0.14.04.1.1089", "binary_name": "chromium-codecs-ffmpeg-extra" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "1.7.8-0ubuntu0.14.04.1", "binary_name": "liboxideqt-qmlplugin" }, { "binary_version": "1.7.8-0ubuntu0.14.04.1", "binary_name": "liboxideqtcore0" }, { "binary_version": "1.7.8-0ubuntu0.14.04.1", "binary_name": "liboxideqtquick0" }, { "binary_version": "1.7.8-0ubuntu0.14.04.1", "binary_name": "oxideqmlscene" }, { "binary_version": "1.7.8-0ubuntu0.14.04.1", "binary_name": "oxideqt-chromedriver" }, { "binary_version": "1.7.8-0ubuntu0.14.04.1", "binary_name": "oxideqt-codecs" }, { "binary_version": "1.7.8-0ubuntu0.14.04.1", "binary_name": "oxideqt-codecs-extra" } ] }