Oval Definition:oval:org.opensuse.security:def:20153335
Revision Date:2017-03-20Version:1
Title:CVE-2015-3335
Description:

The NaClSandbox::InitializeLayerTwoSandbox function in components/nacl/loader/sandbox_linux/nacl_sandbox_linux.cc in Google Chrome before 42.0.2311.90 does not have RLIMIT_AS and RLIMIT_DATA limits for Native Client (aka NaCl) processes, which might make it easier for remote attackers to conduct row-hammer attacks or have unspecified other impact by leveraging the ability to run a crafted program in the NaCl sandbox.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2015-3335
Platform(s):openSUSE 13.1
openSUSE 13.2
Product(s):
Definition Synopsis
  • openSUSE 13.1 is installed
  • AND Package Information
  • chromedriver-42.0.2311.90-78.2 is installed
  • OR chromium-42.0.2311.90-78.2 is installed
  • OR chromium-desktop-gnome-42.0.2311.90-78.2 is installed
  • OR chromium-desktop-kde-42.0.2311.90-78.2 is installed
  • OR chromium-ffmpegsumo-42.0.2311.90-78.2 is installed
  • Definition Synopsis
  • openSUSE 13.2 is installed
  • AND Package Information
  • chromedriver-42.0.2311.90-23.3 is installed
  • OR chromium-42.0.2311.90-23.3 is installed
  • OR chromium-desktop-gnome-42.0.2311.90-23.3 is installed
  • OR chromium-desktop-kde-42.0.2311.90-23.3 is installed
  • OR chromium-ffmpegsumo-42.0.2311.90-23.3 is installed
  • BACK