CVE-2015-1251: Debian Linux

Medium severity, CVSS 6.8. EPSS: 2.4% chance of exploitation in the next 30 days.

Use-after-free vulnerability in the SpeechRecognitionClient implementation in the Speech subsystem in Google Chrome before 43.0.2357.65 allows remote attackers to execute arbitrary code via a crafted document.

Affected products

  • Debian Debian Linux: version 8.0 only
  • Google Chrome: up to and including 42.0.2311.152

Published 2015-05-20. Last modified 2026-06-17.