CVE-2016-5172 PUBLISHED

The parser in Google V8, as used in Google Chrome before 53.0.2785.113, mishandles scopes, which allows remote attackers to obtain sensitive information from arbitrary memory locations via crafted JavaScript code.

EPSS 1.13% · 78.2th percentile

Risk Scores

EPSS Score
1.13%
78.2th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSoxide-qt1.17.7-0ubuntu0.16.04.1, 1.16.5-0ubuntu0.16.04.1, 1.15.8-0ubuntu0.16.04.1
Ubuntu:14.04:LTSchromium-browser45.0.2454.85-0ubuntu0.14.04.1.1097, 45.0.2454.101-0ubuntu0.14.04.1.1099, 47.0.2526.73-0ubuntu0.14.04.1.1106
Ubuntu:14.04:LTSoxide-qt1.12.6-0ubuntu0.14.04.1, 1.7.8-0ubuntu0.14.04.1, 1.7.9-0ubuntu0.14.04.1
Ubuntu:16.04:LTSchromium-browser0, 45.0.2454.101-0ubuntu1.1201, 47.0.2526.73-0ubuntu1.1218

Timeline

References

Open in Interactive Console →