Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2015-6765

Description

Use-after-free vulnerability in content/browser/appcache/appcache_update_job.cc in Google Chrome before 47.0.2526.73 allows remote attackers to execute arbitrary code or cause a denial of service by leveraging the mishandling of AppCache update jobs.

POC

Reference

- https://codereview.chromium.org/1463463003/

Github

- https://github.com/0xR0/uxss-db

- https://github.com/Metnew/uxss-db

- https://github.com/allpaca/chrome-sbx-db