CVE-2016-1156: Input Validation
Published Feb 19, 2016
·Updated
LINE 4.3.0.724 and earlier on Windows and 4.3.1 and earlier on OS X allows remote authenticated users to cause a denial of service (application crash) via a crafted post that is mishandled when displaying a Timeline.
Affected Software
4 affected components
Apple iOS and macOS
linecorp Line Macos<=4.3.1
Microsoft Windows
linecorp Line Windows<=4.3.0.724
Event History
Feb 19, 2016
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1156?
The severity of CVE-2016-1156 is considered moderate due to its ability to cause denial of service.
2
How do I fix CVE-2016-1156?
To fix CVE-2016-1156, users should update LINE to version 4.3.2 or later for macOS and to version 4.3.1 or later for Windows.
3
What types of systems are affected by CVE-2016-1156?
CVE-2016-1156 affects LINE versions up to 4.3.1 on macOS and up to 4.3.0.724 on Windows.
4
Can remote unauthenticated users exploit CVE-2016-1156?
No, CVE-2016-1156 requires remote authenticated users to exploit the vulnerability.
5
What is the potential impact of CVE-2016-1156?
The potential impact of CVE-2016-1156 is an application crash leading to denial of service.