ZeroHour

CVE-2016-1669

CVSS 3.1
8.8 high
EPSS
4%p90
Published
()
Modified
Description

The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not properly determine when to expand certain memory allocations, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.

Vendors
debiangoogleopensusenodejscanonical
Products
debian linux, chrome, opensuse, v8, node.js, ubuntu linux
Weakness
CWE-119
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.