Common Vulnerabilities and Exposures assigned an identifier CVE-2014-1717 to the following vulnerability: Name: CVE-2014-1717 URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1717 Assigned: 20140129 Reference: http://googlechromereleases.blogspot.com/2014/04/stable-channel-update.html Reference: https://code.google.com/p/chromium/issues/detail?id=353004 Reference: https://code.google.com/p/v8/source/detail?r=20020 Google V8, as used in Google Chrome before 34.0.1847.116, does not properly use numeric casts during handling of typed arrays, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JavaScript code. From a brief, initial investigation, the function is not in the versions of v8 as shipped in Red Hat products.
This fix is not applicable to v8 3.14.