First published: Sat May 14 2016(Updated: )
extensions/renderer/gc_callback.cc in Google Chrome before 50.0.2661.94 does not prevent fallback execution once the Garbage Collection callback has started, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via unknown vectors.
Credit: cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome (Trace Event) | <=50.0.2661.87 | |
Red Hat Enterprise Linux Desktop | =6.0 | |
Red Hat Enterprise Linux Server Supplementary | =6.0 | |
Red Hat Enterprise Linux Server Supplementary EUS | =6.7z | |
Red Hat Enterprise Linux Workstation Supplementary | =6.0 | |
SUSE Linux | =13.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1662 is classified as a high severity vulnerability that can lead to denial of service due to a use-after-free condition.
To fix CVE-2016-1662, update Google Chrome to version 50.0.2661.94 or later.
CVE-2016-1662 may allow remote attackers to exploit the vulnerability to cause denial of service or potentially other unspecified impacts.
CVE-2016-1662 affects Google Chrome versions prior to 50.0.2661.94.
CVE-2016-1662 also affects certain versions of Red Hat Enterprise Linux and openSUSE.