Show filters
156 Total Results
Displaying 41-50 of 156
Sort by:
Attacker Value
Unknown

CVE-2016-1677

Disclosure Date: June 05, 2016 (last updated November 08, 2023)
uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."
0
Attacker Value
Unknown

CVE-2016-1692

Disclosure Date: June 05, 2016 (last updated November 08, 2023)
WebKit/Source/core/css/StyleSheetContents.cpp in Blink, as used in Google Chrome before 51.0.2704.63, permits cross-origin loading of CSS stylesheets by a ServiceWorker even when the stylesheet download has an incorrect MIME type, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.
0
Attacker Value
Unknown

CVE-2016-1680

Disclosure Date: June 05, 2016 (last updated November 08, 2023)
Use-after-free vulnerability in ports/SkFontHost_FreeType.cpp in Skia, as used in Google Chrome before 51.0.2704.63, allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2016-1691

Disclosure Date: June 05, 2016 (last updated November 08, 2023)
Skia, as used in Google Chrome before 51.0.2704.63, mishandles coincidence runs, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted curves, related to SkOpCoincidence.cpp and SkPathOpsCommon.cpp.
0
Attacker Value
Unknown

CVE-2016-1695

Disclosure Date: June 05, 2016 (last updated November 08, 2023)
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.63 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2016-1688

Disclosure Date: June 05, 2016 (last updated November 08, 2023)
The regexp (aka regular expression) implementation in Google V8 before 5.0.71.40, as used in Google Chrome before 51.0.2704.63, mishandles external string sizes, which allows remote attackers to cause a denial of service (out-of-bounds read) via crafted JavaScript code.
0
Attacker Value
Unknown

CVE-2016-1689

Disclosure Date: June 05, 2016 (last updated November 08, 2023)
Heap-based buffer overflow in content/renderer/media/canvas_capture_handler.cc in Google Chrome before 51.0.2704.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted web site.
0
Attacker Value
Unknown

CVE-2016-1683

Disclosure Date: June 05, 2016 (last updated November 08, 2023)
numbers.c in libxslt before 1.1.29, as used in Google Chrome before 51.0.2704.63, mishandles namespace nodes, which allows remote attackers to cause a denial of service (out-of-bounds heap memory access) or possibly have unspecified other impact via a crafted document.
0
Attacker Value
Unknown

CVE-2016-1678

Disclosure Date: June 05, 2016 (last updated November 08, 2023)
objects.cc in Google V8 before 5.0.71.32, as used in Google Chrome before 51.0.2704.63, does not properly restrict lazy deoptimization, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.
0
Attacker Value
Unknown

CVE-2016-4569

Disclosure Date: May 23, 2016 (last updated November 25, 2024)
The snd_timer_user_params function in sound/core/timer.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer interface.
0