First published: Tue Mar 29 2016(Updated: )
Use-after-free vulnerability in the RenderWidgetHostImpl::Destroy function in content/browser/renderer_host/render_widget_host_impl.cc in the Navigation implementation in Google Chrome before 49.0.2623.108 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
Credit: cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <=49.0.2623.95 | |
Ubuntu Linux | =14.04 | |
Ubuntu Linux | =15.10 | |
Ubuntu Linux | =16.04 | |
Debian GNU/Linux | =8.0 | |
openSUSE | =13.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1647 has been classified as a high-severity vulnerability due to its potential for denial of service and exploitation characteristics.
To fix CVE-2016-1647, it is recommended to update Google Chrome to version 49.0.2623.108 or later.
CVE-2016-1647 is a use-after-free vulnerability affecting specific versions of Google Chrome.
Google Chrome versions prior to 49.0.2623.108 are affected by CVE-2016-1647.
Yes, CVE-2016-1647 allows remote attackers to cause a denial of service through exploitation.