CVE-2015-1255: Debian Linux

Medium severity, CVSS 6.8. EPSS: 1.4% chance of exploitation in the next 30 days.

Use-after-free vulnerability in content/renderer/media/webaudio_capturer_source.cc in the WebAudio implementation in Google Chrome before 43.0.2357.65 allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact by leveraging improper handling of a stop action for an audio track.

Affected products

  • Debian Debian Linux: version 8.0 only
  • Google Chrome: up to and including 42.0.2311.152

Published 2015-05-20. Last modified 2026-06-17.