AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2014-3173

MEDIUM · CVSS 5 EPSS 1.58%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-08-27 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2014-3173
Severity
MEDIUM
CVSS
5
EPSS
1.58%
Chrome

Original Filing — NVD Description

The WebGL implementation in Google Chrome before 37.0.2062.94 does not ensure that clear calls interact properly with the state of a draw buffer, which allows remote attackers to cause a denial of service (read of uninitialized memory) via a crafted CANVAS element, related to gpu/command_buffer/service/framebuffer_manager.cc and gpu/command_buffer/service/gles2_cmd_decoder.cc.