CVE-2016-5153 PUBLISHED

The Web Animations implementation in Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, improperly relies on list iteration, which allows remote attackers to cause a denial of service (use-after-destruction) or possibly have unspecified other impact via a crafted web site.

EPSS 1.67% · 82.0th percentile

Risk Scores

EPSS Score
1.67%
82.0th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSoxide-qt1.16.5-0ubuntu0.16.04.1, 1.15.8-0ubuntu0.16.04.1, 1.15.7-0ubuntu0.16.04.1
Ubuntu:14.04:LTSchromium-browser44.0.2403.89-0ubuntu0.14.04.1.1095, 45.0.2454.85-0ubuntu0.14.04.1.1097, 45.0.2454.101-0ubuntu0.14.04.1.1099
Ubuntu:16.04:LTSchromium-browser48.0.2564.116-0ubuntu1.1229, 49.0.2623.87-0ubuntu1.1232, 49.0.2623.108-0ubuntu1.1233
Ubuntu:14.04:LTSoxide-qt1.12.6-0ubuntu0.14.04.1, 1.12.7-0ubuntu0.14.04.1, 1.13.6-0ubuntu0.14.04.1

Timeline

References

Open in Interactive Console →