CVE-2015-1245: Debian Linux

Medium severity, CVSS 6.8. EPSS: 1.8% chance of exploitation in the next 30 days.

Use-after-free vulnerability in the OpenPDFInReaderView::Update function in browser/ui/views/location_bar/open_pdf_in_reader_view.cc in Google Chrome before 41.0.2272.76 might allow user-assisted remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact by triggering interaction with a PDFium "Open PDF in Reader" button that has an invalid tab association.

Affected products

  • Debian Debian Linux: version 7.0 only
  • Google Chrome: up to and including 41.0.2272.74

Published 2015-04-19. Last modified 2026-06-17.