Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-1677

Опубликовано: 05 июн. 2016
Источник: debian

Описание

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."

Пакеты

ПакетСтатусВерсия исправленияРелизТип
chromium-browserfixed51.0.2704.63-1package
chromium-browserend-of-lifewheezypackage
libv8unfixedpackage

Примечания

  • libv8 not covered by security support

Связанные уязвимости

CVSS3: 6.5
ubuntu
около 10 лет назад

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."

redhat
около 10 лет назад

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."

CVSS3: 6.5
nvd
около 10 лет назад

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."

CVSS3: 6.5
github
больше 4 лет назад

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."

fstec
около 10 лет назад

Уязвимость браузерного ядра V8, позволяющая нарушителю получить конфиденциальную информацию