CVE-2016-1669: Buffer Overflow
A buffer overflow flaw was found in the V8 component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=606115
External References:
http://googlechromereleases.blogspot.com/2016/05/stable-channel-update.html
Other sources
The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not properly determine when to expand certain memory allocations, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1669?
CVE-2016-1669 has a severity rating that indicates it can lead to denial of service and potential buffer overflow vulnerabilities.
How do I fix CVE-2016-1669?
To fix CVE-2016-1669, upgrade Google Chrome to version 50.0.2661.10 or later, or update Node.js to the specified remedial versions.
What versions of Google V8 are affected by CVE-2016-1669?
CVE-2016-1669 affects Google V8 versions prior to 5.0.71.
Which software packages are impacted by CVE-2016-1669?
CVE-2016-1669 impacts Google Chrome, multiple versions of Node.js, Debian Linux 8.0, and openSUSE 13.1.
Can CVE-2016-1669 be exploited remotely?
Yes, CVE-2016-1669 can be exploited by remote attackers to cause a denial of service.