CVE-2016-1700: Use After Free
An use-after-free flaw was found in the Extensions component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=608104
External References:
http://googlechromereleases.blogspot.com/2016/06/stable-channel-update.html
Other sources
extensions/renderer/runtimecustombindings.cc in Google Chrome before 51.0.2704.79 does not consider side effects during creation of an array of extension views, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via vectors related to extensions.
— MITRE
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1700?
CVE-2016-1700 is classified as a high severity vulnerability that may lead to denial of service or other unspecified impacts.
How do I fix CVE-2016-1700?
To fix CVE-2016-1700, you should update Google Chrome to version 51.0.2704.79 or later.
Which versions of Google Chrome are affected by CVE-2016-1700?
CVE-2016-1700 affects all Google Chrome versions prior to 51.0.2704.79.
Are there any specific operating systems impacted by CVE-2016-1700?
CVE-2016-1700 impacts Google Chrome running on multiple operating systems, including Debian, Red Hat, and openSUSE.
What type of vulnerability is CVE-2016-1700 categorized as?
CVE-2016-1700 is categorized as a use-after-free vulnerability that can lead to denial of service.