9.3
CVSSv2

CVE-2016-1646

Published: 29/03/2016 Updated: 07/11/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 830
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome prior to 49.0.2623.108, does not properly consider element data types, which allows remote malicious users to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via crafted JavaScript code.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

debian debian linux 8.0

canonical ubuntu linux 16.04

canonical ubuntu linux 15.10

canonical ubuntu linux 14.04

opensuse opensuse 13.1

google chrome

Vendor Advisories

Several security issues were fixed in Oxide ...
Several vulnerabilities have been discovered in the chromium web browser CVE-2016-1646 Wen Xu discovered an out-of-bounds read issue in the v8 library CVE-2016-1647 A use-after-free issue was discovered CVE-2016-1648 A use-after-free issue was discovered in the handling of extensions CVE-2016-1649 lokihardt discovered a buffer ...
The Arrayprototypeconcat implementation in builtinscc in Google V8, as used in Google Chrome before 4902623108, does not properly consider element data types, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via crafted JavaScript code ...