4.3
CVSSv2

CVE-2016-5201

Published: 19/01/2017 Updated: 05/01/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

A leak of privateClass in the extensions API in Google Chrome before 54.0.2840.100 for Linux, and 54.0.2840.99 for Windows, and 54.0.2840.98 for Mac allowed a remote malicious user to access privileged JavaScript code via a crafted HTML page.

Affected Products

Vendor Product Versions
GoogleChrome54.0.2840.87

Vendor Advisories

Synopsis Important: chromium-browser security update Type/Severity Security Advisory: Important Topic An update for chromium-browser is now available for Red Hat Enterprise Linux 6 SupplementaryRed Hat Product Security has rated this update as having a security impact of Important A Common Vulnerability S ...
A leak of privateClass in the extensions API in Google Chrome prior to 5402840100 for Linux, and 540284099 for Windows, and 540284098 for Mac allowed a remote attacker to access privileged JavaScript code via a crafted HTML page ...
An information disclosure flaw was found in the extensions component of the Chromium browser before 5402840100 ...
Arch Linux Security Advisory ASA-201702-2 ========================================= Severity: High Date : 2017-02-02 CVE-ID : CVE-2016-5182 CVE-2016-5183 CVE-2016-5189 CVE-2016-5199 CVE-2016-5201 CVE-2016-5203 CVE-2016-5204 CVE-2016-5205 CVE-2016-5206 CVE-2016-5207 CVE-2016-5208 CVE-2016-5210 CVE-2016-5211 CVE-201 ...