PT-2016-1347 · Google+4 · Google Chrome+4

Rob Wu

·

Published

2016-03-02

·

Updated

2024-06-15

·

CVE-2016-1635

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 49.0.2623.75 Opera versions prior to 49.0.2623.75
Description The issue is related to the handling of OnDocumentElementCreated in the extensions/renderer/render frame observer natives.cc file, which does not properly consider object lifetimes and re-entrancy issues. This allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via unknown vectors. The vulnerability is also described as a use-after-free issue, which may be exploited by a remote attacker to disrupt service or have other unspecified effects.
Recommendations For Google Chrome versions prior to 49.0.2623.75, update to version 49.0.2623.75 or later to resolve the issue. For Opera versions prior to 49.0.2623.75, update to a version that includes the fix for this issue, as the exact version is not specified. At the moment, there is no information about additional mitigation measures for this vulnerability.

Fix

Use After Free

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2016-1283
BDU:2016-00646
CVE-2016-1635
DSA-3507-1
MGASA-2016-0127
OPENSUSE-SU-2016_0664-1
OPENSUSE-SU-2016_0684-1
OPENSUSE-SU-2016_0729-1
OPENSUSE-SU-2024:10171-1
OPENSUSE-SU-2024:12948-1
RHSA-2016:0359
RHSA-2016_0359

Affected Products

Alt Linux
Google Chrome
Opera
Red Hat
Suse