Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-1677

Опубликовано: 25 мая 2016
Источник: redhat
CVSS2: 4.3
EPSS Низкий

Описание

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=1340010chromium-browser: type confusion in v8

EPSS

Процентиль: 93%
0.09832
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 9 лет назад

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."

CVSS3: 6.5
nvd
больше 9 лет назад

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."

CVSS3: 6.5
debian
больше 9 лет назад

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before ...

CVSS3: 6.5
github
больше 3 лет назад

uri.js in Google V8 before 5.1.281.26, as used in Google Chrome before 51.0.2704.63, uses an incorrect array type, which allows remote attackers to obtain sensitive information by calling the decodeURI function and leveraging "type confusion."

fstec
больше 9 лет назад

Уязвимость браузерного ядра V8, позволяющая нарушителю получить конфиденциальную информацию

EPSS

Процентиль: 93%
0.09832
Низкий

4.3 Medium

CVSS2