CVE-2016-1655 PUBLISHED

Google Chrome before 50.0.2661.75 does not properly consider that frame removal may occur during callback execution, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted extension.

EPSS 3.03% · 86.5th percentile

Risk Scores

EPSS Score
3.03%
86.5th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSchromium-browser48.0.2564.116-0ubuntu1.1229, 49.0.2623.87-0ubuntu1.1232, 49.0.2623.108-0ubuntu1.1233
Ubuntu:14.04:LTSoxide-qt1.9.1-0ubuntu0.14.04.2, 1.9.5-0ubuntu0.14.04.1, 1.10.3-0ubuntu0.14.04.1
Ubuntu:14.04:LTSchromium-browser45.0.2454.101-0ubuntu0.14.04.1.1099, 29.0.1547.65-0ubuntu2, 31.0.1650.63-0ubuntu1~20131204.1
Ubuntu:16.04:LTSoxide-qt0, 1.9.5-0ubuntu1, 1.10.3-0ubuntu0.15.10.1

Timeline

References

Open in Interactive Console →