CVE-2016-5186 PUBLISHED

Devtools in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android incorrectly handled objects after a tab crash, which allowed a remote attacker to perform an out of bounds memory read via crafted PDF files.

EPSS 0.33% · 55.7th percentile

Risk Scores

EPSS Score
0.33%
55.7th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSoxide-qt1.17.9-0ubuntu0.16.04.1, 1.17.7-0ubuntu0.16.04.1, 1.16.5-0ubuntu0.16.04.1
Ubuntu:14.04:LTSchromium-browser45.0.2454.101-0ubuntu0.14.04.1.1099, 47.0.2526.73-0ubuntu0.14.04.1.1106, 47.0.2526.106-0ubuntu0.14.04.1.1107
Ubuntu:16.04:LTSchromium-browser48.0.2564.116-0ubuntu1.1229, 49.0.2623.87-0ubuntu1.1232, 49.0.2623.108-0ubuntu1.1233
Ubuntu:14.04:LTSoxide-qt1.14.9-0ubuntu0.14.04.1, 1.15.7-0ubuntu0.14.04.1, 1.15.8-0ubuntu0.14.04.1

Timeline

References

Open in Interactive Console →