CVE-2016-1675: High severity ubuntu vulnerability
A cross-origin bypass flaw was found in the Blink component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=600182
External References:
http://googlechromereleases.blogspot.com/2016/05/stable-channel-update25.html
Other sources
Blink, as used in Google Chrome before 51.0.2704.63, allows remote attackers to bypass the Same Origin Policy by leveraging the mishandling of Document reattachment during destruction, related to FrameLoader.cpp and LocalFrame.cpp.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1675?
CVE-2016-1675 is categorized as a high severity vulnerability due to its potential to allow remote attackers to bypass the Same Origin Policy.
How do I fix CVE-2016-1675?
To fix CVE-2016-1675, users should update their browser to Google Chrome version 51.0.2704.63 or later.
Which versions of Google Chrome are affected by CVE-2016-1675?
CVE-2016-1675 affects Google Chrome versions prior to 51.0.2704.63.
Can CVE-2016-1675 affect other operating systems?
Yes, CVE-2016-1675 can affect multiple operating systems including Ubuntu, Debian, and openSUSE due to their included versions of Google Chrome.
What type of attack can exploit CVE-2016-1675?
CVE-2016-1675 can be exploited through cross-origin attacks that bypass the Same Origin Policy.