CVE-2015-1332: Canonical Ubuntu Linux
High severity, CVSS 8.8. EPSS: 2.6% chance of exploitation in the next 30 days.
The oxide::JavaScriptDialogManager function in oxide-qt before 1.9.1 as packaged in Ubuntu 15.04 and Ubuntu 14.04 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted website.
Affected products
- Canonical Ubuntu Linux: version 14.04 only; version 15.10 only
- Oxide Project Oxide: up to and including 1.9.0
Published 2017-07-25. Last modified 2026-06-17.