CVE-2014-1748
The ScrollView::paint function in platform/scroll/ScrollView.cpp in Blink, as used in Google Chrome before 35.0.1916.114, allows remote attackers to spoof the UI by extending scrollbar painting into the parent frame.
Date published : 2014-05-21
http://lists.apple.com/archives/security-announce/2014/Dec/msg00000.html
http://googlechromereleases.blogspot.com/2014/05/stable-channel-update_20.html
