7.6
CVSSv3

CVE-2016-1619

Published: 25/01/2016 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.6 | Impact Score: 4.7 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple integer overflows in the (1) sycc422_to_rgb and (2) sycc444_to_rgb functions in fxcodec/codec/fx_codec_jpx_opj.cpp in PDFium, as used in Google Chrome prior to 48.0.2564.82, allow remote malicious users to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted PDF document.

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Vendor Advisories

Several vulnerabilities were discovered in the chromium web browser CVE-2015-6792 An issue was found in the handling of MIDI files CVE-2016-1612 cloudfuzzer discovered a logic error related to receiver compatibility in the v8 javascript library CVE-2016-1613 A use-after-free issue was discovered in the pdfium library CVE-2016-1 ...
Multiple integer overflows in the (1) sycc422_to_rgb and (2) sycc444_to_rgb functions in fxcodec/codec/fx_codec_jpx_opjcpp in PDFium, as used in Google Chrome before 480256482, allow remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted PDF document ...