CVE-2016-5214: Medium severity Google Chrome vulnerability
Published Jan 19, 2017
·Updated
Google Chrome prior to 55.0.2883.75 for Windows mishandled downloaded files, which allowed a remote attacker to prevent the downloaded file from receiving the Mark of the Web via a crafted HTML page.
Affected Software
1 affected component
Google Chrome<=54.0.2840.99
Remediation
Patch Available
Event History
Jan 19, 2017
CVE Published
via MITRE·05:43 AM
Data Sourced
via MITRE·05:43 AM
DescriptionWeakness
Data Sourced
via NVD·05:59 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2016-5214?
CVE-2016-5214 has a medium severity rating, which indicates a potential risk to users of affected Google Chrome versions.
2
How do I fix CVE-2016-5214?
To fix CVE-2016-5214, you should update Google Chrome to version 55.0.2883.75 or later.
3
What are the consequences of CVE-2016-5214?
CVE-2016-5214 allows a remote attacker to prevent the Mark of the Web from being applied to downloaded files, which can lead to security issues.
4
Which versions of Google Chrome are affected by CVE-2016-5214?
CVE-2016-5214 affects Google Chrome versions prior to 55.0.2883.75 on Windows.
5
Is there a workaround for CVE-2016-5214?
There are no specific workarounds for CVE-2016-5214 other than upgrading to the latest version of Google Chrome.