CVE-2016-1647
- EPSS 1.29%
- Veröffentlicht 29.03.2016 10:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the RenderWidgetHostImpl::Destroy function in content/browser/renderer_host/render_widget_host_impl.cc in the Navigation implementation in Google Chrome before 49.0.2623.108 allows remote attackers to cause a denial of...
CVE-2016-1646
- EPSS 68.65%
- Veröffentlicht 29.03.2016 10:59:00
- Zuletzt bearbeitet 22.10.2025 00:15:49
The Array.prototype.concat implementation in builtins.cc in Google V8, as used in Google Chrome before 49.0.2623.108, does not properly consider element data types, which allows remote attackers to cause a denial of service (out-of-bounds read) or po...
CVE-2016-1645
- EPSS 2.19%
- Veröffentlicht 13.03.2016 22:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple integer signedness errors in the opj_j2k_update_image_data function in j2k.c in OpenJPEG, as used in PDFium in Google Chrome before 49.0.2623.87, allow remote attackers to cause a denial of service (incorrect cast and out-of-bounds write) or...
CVE-2016-1644
- EPSS 1.83%
- Veröffentlicht 13.03.2016 22:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit/Source/core/layout/LayoutObject.cpp in Blink, as used in Google Chrome before 49.0.2623.87, does not properly restrict relayout scheduling, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecifie...
CVE-2016-1643
- EPSS 2.02%
- Veröffentlicht 13.03.2016 22:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ImageInputType::ensurePrimaryContent function in WebKit/Source/core/html/forms/ImageInputType.cpp in Blink, as used in Google Chrome before 49.0.2623.87, does not properly maintain the user agent shadow DOM, which allows remote attackers to cause...
CVE-2016-2845
- EPSS 0.65%
- Veröffentlicht 06.03.2016 02:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Content Security Policy (CSP) implementation in Blink, as used in Google Chrome before 49.0.2623.75, does not ignore a URL's path component in the case of a ServiceWorker fetch, which allows remote attackers to obtain sensitive information about ...
CVE-2016-2844
- EPSS 1.99%
- Veröffentlicht 06.03.2016 02:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit/Source/core/layout/LayoutBlock.cpp in Blink, as used in Google Chrome before 49.0.2623.75, does not properly determine when anonymous block wrappers may exist, which allows remote attackers to cause a denial of service (incorrect cast and asse...
- EPSS 0.89%
- Veröffentlicht 06.03.2016 02:59:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in Google V8 before 4.9.385.26, as used in Google Chrome before 49.0.2623.75, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
- EPSS 1.86%
- Veröffentlicht 06.03.2016 02:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in Google Chrome before 49.0.2623.75 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
CVE-2016-1640
- EPSS 0.76%
- Veröffentlicht 06.03.2016 02:59:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Web Store inline-installer implementation in the Extensions UI in Google Chrome before 49.0.2623.75 does not block installations upon deletion of an installation frame, which makes it easier for remote attackers to trick a user into believing tha...