CVE-2016-10403: High severity Google Chrome vulnerability
Published Jan 9, 2019
·Updated
Insufficient data validation on image data in PDFium in Google Chrome prior to 51.0.2704.63 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file.
Affected Software
1 affected component
Google Chrome<51.0.2704.63
Event History
Jan 9, 2019
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-10403?
The severity of CVE-2016-10403 is high, with a CVSS score of 8.8.
2
How do I fix CVE-2016-10403?
To fix CVE-2016-10403, update Google Chrome to version 51.0.2704.63 or later.
3
What type of vulnerability is CVE-2016-10403?
CVE-2016-10403 is classified as an insufficient data validation vulnerability affecting image data in PDFium.
4
What impact does CVE-2016-10403 have on users?
CVE-2016-10403 allows remote attackers to perform an out of bounds memory read, potentially compromising user data.
5
Which software is affected by CVE-2016-10403?
CVE-2016-10403 affects Google Chrome versions prior to 51.0.2704.63.