CVE-2014-3165 - CVE House
Back to Database
Status published High CVE-2014-3165

Use-after-free vulnerability in modules/websockets/WorkerThreadableWebSocketChannel.cpp in the Web Sockets implementation in...

Vulnerability Description

Use-after-free vulnerability in modules/websockets/WorkerThreadableWebSocketChannel.cpp in the Web Sockets implementation in Blink, as used in Google Chrome before 36.0.1985.143, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an unexpectedly long lifetime of a temporary object during method completion.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2014-3165

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

debian linux, chrome
Vulnerable Versions:
7.0, 8.0, 0, 36.0.1985.1, 36.0.1985.2, 36.0.1985.3, 36.0.1985.4, 36.0.1985.5, 36.0.1985.6, 36.0.1985.8, 36.0.1985.12, 36.0.1985.13, 36.0.1985.14, 36.0.1985.15, 36.0.1985.16, 36.0.1985.17, 36.0.1985.18, 36.0.1985.19, 36.0.1985.20, 36.0.1985.21, 36.0.1985.22, 36.0.1985.23, 36.0.1985.24, 36.0.1985.25, 36.0.1985.26, 36.0.1985.27, 36.0.1985.28, 36.0.1985.29, 36.0.1985.30, 36.0.1985.31, 36.0.1985.32, 36.0.1985.33, 36.0.1985.34, 36.0.1985.35, 36.0.1985.36, 36.0.1985.37, 36.0.1985.38, 36.0.1985.39, 36.0.1985.40, 36.0.1985.41, 36.0.1985.42, 36.0.1985.43, 36.0.1985.44, 36.0.1985.45, 36.0.1985.46, 36.0.1985.47, 36.0.1985.48, 36.0.1985.49, 36.0.1985.50, 36.0.1985.51, 36.0.1985.52, 36.0.1985.53, 36.0.1985.54, 36.0.1985.55, 36.0.1985.56, 36.0.1985.57, 36.0.1985.58, 36.0.1985.59, 36.0.1985.60, 36.0.1985.61, 36.0.1985.62, 36.0.1985.63, 36.0.1985.64, 36.0.1985.65, 36.0.1985.66, 36.0.1985.67, 36.0.1985.68, 36.0.1985.69, 36.0.1985.70, 36.0.1985.72, 36.0.1985.73, 36.0.1985.74, 36.0.1985.75, 36.0.1985.76, 36.0.1985.77, 36.0.1985.78, 36.0.1985.79, 36.0.1985.81, 36.0.1985.82, 36.0.1985.83, 36.0.1985.84, 36.0.1985.85, 36.0.1985.86, 36.0.1985.87, 36.0.1985.88, 36.0.1985.89, 36.0.1985.90, 36.0.1985.91, 36.0.1985.92, 36.0.1985.93, 36.0.1985.94, 36.0.1985.95, 36.0.1985.96, 36.0.1985.97, 36.0.1985.98, 36.0.1985.99, 36.0.1985.100, 36.0.1985.101, 36.0.1985.102, 36.0.1985.103, 36.0.1985.104, 36.0.1985.105, 36.0.1985.106, 36.0.1985.122, 36.0.1985.123, 36.0.1985.124, 36.0.1985.125, 36.0.1985.126, 36.0.1985.128, 36.0.1985.129, 36.0.1985.130, 36.0.1985.131, 36.0.1985.132, 36.0.1985.133, 36.0.1985.134, 36.0.1985.135, 36.0.1985.138, 36.0.1985.139, 36.0.1985.140, 36.0.1985.141

Timeline

Official Publish: August 13th, 2014
Last Modified: August 6th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.