CVE-2016-1691
- EPSS 1.4%
- Veröffentlicht 05.06.2016 23:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
Skia, as used in Google Chrome before 51.0.2704.63, mishandles coincidence runs, which allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via crafted curves, related to SkOpCoin...
CVE-2016-1690
- EPSS 1.48%
- Veröffentlicht 05.06.2016 23:59:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Autofill implementation in Google Chrome before 51.0.2704.63 mishandles the interaction between field updates and JavaScript code that triggers a frame deletion, which allows remote attackers to cause a denial of service (use-after-free) or possi...
CVE-2016-1689
- EPSS 1.73%
- Veröffentlicht 05.06.2016 23:59:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in content/renderer/media/canvas_capture_handler.cc in Google Chrome before 51.0.2704.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted web site.
CVE-2016-1688
- EPSS 4.87%
- Veröffentlicht 05.06.2016 23:59:17
- Zuletzt bearbeitet 12.04.2025 10:46:40
The regexp (aka regular expression) implementation in Google V8 before 5.0.71.40, as used in Google Chrome before 51.0.2704.63, mishandles external string sizes, which allows remote attackers to cause a denial of service (out-of-bounds read) via craf...
CVE-2016-1687
- EPSS 2.06%
- Veröffentlicht 05.06.2016 23:59:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
The renderer implementation in Google Chrome before 51.0.2704.63 does not properly restrict public exposure of classes, which allows remote attackers to obtain sensitive information via vectors related to extensions.
CVE-2016-1686
- EPSS 1.45%
- Veröffentlicht 05.06.2016 23:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
The CPDF_DIBSource::CreateDecoder function in core/fpdfapi/fpdf_render/fpdf_render_loadimage.cpp in PDFium, as used in Google Chrome before 51.0.2704.63, mishandles decoder-initialization failure, which allows remote attackers to cause a denial of se...
CVE-2016-1685
- EPSS 1.45%
- Veröffentlicht 05.06.2016 23:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
core/fxge/ge/fx_ge_text.cpp in PDFium, as used in Google Chrome before 51.0.2704.63, miscalculates certain index values, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PDF document.
CVE-2016-1683
- EPSS 0.46%
- Veröffentlicht 05.06.2016 23:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
numbers.c in libxslt before 1.1.29, as used in Google Chrome before 51.0.2704.63, mishandles namespace nodes, which allows remote attackers to cause a denial of service (out-of-bounds heap memory access) or possibly have unspecified other impact via ...
CVE-2016-1682
- EPSS 0.47%
- Veröffentlicht 05.06.2016 23:59:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ServiceWorkerContainer::registerServiceWorkerImpl function in WebKit/Source/modules/serviceworkers/ServiceWorkerContainer.cpp in Blink, as used in Google Chrome before 51.0.2704.63, allows remote attackers to bypass the Content Security Policy (C...
CVE-2016-1681
- EPSS 1.28%
- Veröffentlicht 05.06.2016 23:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in the opj_j2k_read_SPCod_SPCoc function in j2k.c in OpenJPEG, as used in PDFium in Google Chrome before 51.0.2704.63, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a cra...