CVE-2016-8501: Medium severity yandex browser vulnerability
Published Oct 26, 2016
·Updated
Security WiFi bypass in Yandex Browser from version 15.10 to 15.12 allows remote attacker to sniff traffic in open or WEP-protected wi-fi networks despite of special security mechanism is enabled.
Affected Software
3 affected components
Yandex Yandex Browser=15.10.2454.3845
Yandex Yandex Browser=15.12.0.6151
Yandex Yandex Browser=15.12.1.6475
Event History
Oct 26, 2016
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-8501?
CVE-2016-8501 is considered a critical vulnerability as it allows remote attackers to sniff traffic on insecure WiFi networks.
2
What versions of Yandex Browser are affected by CVE-2016-8501?
CVE-2016-8501 affects Yandex Browser versions 15.10 to 15.12.1.
3
How do I fix CVE-2016-8501?
To fix CVE-2016-8501, update Yandex Browser to the latest version available beyond 15.12.1.
4
What type of attacks can be performed due to CVE-2016-8501?
CVE-2016-8501 allows attackers to intercept and sniff traffic on open or WEP-protected WiFi networks.
5
Is there a specific environment that CVE-2016-8501 targets?
CVE-2016-8501 specifically targets users of Yandex Browser operating on open or WEP-protected WiFi networks.