8.8
CVSSv3

CVE-2016-1655

Published: 18/04/2016 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Google Chrome prior to 50.0.2661.75 does not properly consider that frame removal may occur during callback execution, which allows remote malicious users to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted extension.

Vulnerable Product Search on Vulmon Subscribe to Product

debian debian linux 8.0

suse linux enterprise 12.0

opensuse leap 42.1

google chrome

canonical ubuntu linux 16.04

canonical ubuntu linux 15.10

canonical ubuntu linux 14.04

Vendor Advisories

Several security issues were fixed in Oxide ...
Several vulnerabilities have been discovered in the chromium web browser CVE-2016-1651 An out-of-bounds read issue was discovered in the pdfium library CVE-2016-1652 A cross-site scripting issue was discovered in extension bindings CVE-2016-1653 Choongwoo Han discovered an out-of-bounds write issue in the v8 javascript library ...
Google Chrome before 500266175 does not properly consider that frame removal may occur during callback execution, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted extension ...