UBUNTU-CVE-2016-1663
Dashboard / Vulnerabilities / UBUNTU-CVE-2016-1663
UBUNTU-CVE-2016-1663
Summary:
Details: The SerializedScriptValue::transferArrayBuffers function in WebKit/Source/bindings/core/v8/SerializedScriptValue.cpp in the V8 bindings in Blink, as used in Google Chrome before 50.0.2661.94, mishandles certain array-buffer data structures, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted web site.
References: https://ubuntu.com/security/CVE-2016-1663, http://googlechromereleases.blogspot.ca/2016/04/stable-channel-update_28.html, https://ubuntu.com/security/notices/USN-2960-1, https://www.cve.org/CVERecord?id=CVE-2016-1663
Affected packages
Package
Name: chromium-browser
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
