CVE-2016-5147
CVE-2016-5147
Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, mishandles deferred page loads, which allows remote attackers to inject arbitrary web script or HTML via a crafted web site, aka "Universal XSS (UXSS)."
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://lists.opensuse.org/opensuse-security-announce/2016-09/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-09/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-09/msg00008.htmlhttp://lists.opensuse.org/opensuse-updates/2016-09/msg00073.htmlhttp://rhn.redhat.com/errata/RHSA-2016-1854.htmlhttps://codereview.chromium.org/2155393002https://codereview.chromium.org/2169453002https://codereview.chromium.org/2174263002/https://codereview.chromium.org/2183423002/https://codereview.chromium.org/2190523002/https://codereview.chromium.org/2242923002https://crbug.com/628942