CVE-2016-1632
CVE-2016-1632
The Extensions subsystem in Google Chrome before 49.0.2623.75 does not properly maintain own properties, which allows remote attackers to bypass intended access restrictions via crafted JavaScript code that triggers an incorrect cast, related to extensions/renderer/v8_helpers.h and gin/converter.h.
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://googlechromereleases.blogspot.com/2016/03/stable-channel-update.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00014.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00015.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00018.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-03/msg00028.htmlhttps://code.google.com/p/chromium/issues/detail?id=549986https://codereview.chromium.org/1433293004https://security.gentoo.org/glsa/201603-09http://www.debian.org/security/2016/dsa-3507http://www.securityfocus.com/bid/84008http://www.securitytracker.com/id/1035185