CVE-2016-5212 PUBLISHED

Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android insufficiently sanitized DevTools URLs, which allowed a remote attacker to read local files via a crafted HTML page.

EPSS 0.37% · 58.8th percentile

Risk Scores

EPSS Score
0.37%
58.8th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSchromium-browser0, 53.0.2785.143-0ubuntu0.16.04.1.1257, 53.0.2785.143-0ubuntu0.16.04.1.1254
Ubuntu:14.04:LTSchromium-browser41.0.2272.76-0ubuntu0.14.04.1.1076, 43.0.2357.81-0ubuntu0.14.04.1.1089, 43.0.2357.130-0ubuntu0.14.04.1.1092
Ubuntu:16.04:LTSoxide-qt1.18.5-0ubuntu0.16.04.1, 0, 1.9.5-0ubuntu1
Ubuntu:14.04:LTSoxide-qt1.15.8-0ubuntu0.14.04.1, 1.16.5-0ubuntu0.14.04.1, 1.17.7-0ubuntu0.14.04.1

Timeline

References

Open in Interactive Console →