High severity8.8NVD Advisory· Published Dec 24, 2015· Updated May 6, 2026
CVE-2015-8664
CVE-2015-8664
Description
Integer overflow in the WebCursor::Deserialize function in content/common/cursors/webcursor.cc in Google Chrome before 47.0.2526.106 allows remote attackers to cause a denial of service or possibly have unspecified other impact via an RGBA pixel array with crafted dimensions, a different vulnerability than CVE-2015-6792.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- googlechromereleases.blogspot.com/2015/12/stable-channel-update_15.htmlnvd
- www.securityfocus.com/bid/79686nvd
- www.securitytracker.com/id/1034491nvd
- www.ubuntu.com/usn/USN-2860-1nvd
- code.google.com/p/chromium/issues/detailnvd
- code.google.com/p/chromium/issues/detailnvd
- codereview.chromium.org/1498903003nvd
News mentions
0No linked articles in our index yet.