Show filters
156 Total Results
Displaying 41-50 of 156
Sort by:
Attacker Value
Unknown
CVE-2016-1677
Disclosure Date: June 05, 2016 (last updated November 08, 2023)
uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."
0
Attacker Value
Unknown
CVE-2016-1692
Disclosure Date: June 05, 2016 (last updated November 08, 2023)
WebKit/Source/core/css/StyleSheetContents.cpp in Blink, as used in Google Chrome before 51.0.2704.63, permits cross-origin loading of CSS stylesheets by a ServiceWorker even when the stylesheet download has an incorrect MIME type, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.
0
Attacker Value
Unknown
CVE-2016-1680
Disclosure Date: June 05, 2016 (last updated November 08, 2023)
Use-after-free vulnerability in ports/SkFontHost_FreeType.cpp in Skia, as used in Google Chrome before 51.0.2704.63, allows remote attackers to cause a denial of service (heap memory corruption) or possibly have unspecified other impact via unknown vectors.
0
Attacker Value
Unknown
CVE-2016-1691
Disclosure Date: June 05, 2016 (last updated November 08, 2023)
Skia, as used in Google Chrome before 51.0.2704.63, mishandles coincidence runs, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted curves, related to SkOpCoincidence.cpp and SkPathOpsCommon.cpp.
0
Attacker Value
Unknown
CVE-2016-1695
Disclosure Date: June 05, 2016 (last updated November 08, 2023)
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.63 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
0
Attacker Value
Unknown
CVE-2016-1688
Disclosure Date: June 05, 2016 (last updated November 08, 2023)
The regexp (aka regular expression) implementation in Google V8 before 5.0.71.40, as used in Google Chrome before 51.0.2704.63, mishandles external string sizes, which allows remote attackers to cause a denial of service (out-of-bounds read) via crafted JavaScript code.
0
Attacker Value
Unknown
CVE-2016-1689
Disclosure Date: June 05, 2016 (last updated November 08, 2023)
Heap-based buffer overflow in content/renderer/media/canvas_capture_handler.cc in Google Chrome before 51.0.2704.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted web site.
0
Attacker Value
Unknown
CVE-2016-1683
Disclosure Date: June 05, 2016 (last updated November 08, 2023)
numbers.c in libxslt before 1.1.29, as used in Google Chrome before 51.0.2704.63, mishandles namespace nodes, which allows remote attackers to cause a denial of service (out-of-bounds heap memory access) or possibly have unspecified other impact via a crafted document.
0
Attacker Value
Unknown
CVE-2016-1678
Disclosure Date: June 05, 2016 (last updated November 08, 2023)
objects.cc in Google V8 before 5.0.71.32, as used in Google Chrome before 51.0.2704.63, does not properly restrict lazy deoptimization, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.
0
Attacker Value
Unknown
CVE-2016-4569
Disclosure Date: May 23, 2016 (last updated November 25, 2024)
The snd_timer_user_params function in sound/core/timer.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer interface.
0