CVE-2016-5168

Skia, as used in Google Chrome before 50.0.2661.94, allows remote attackers to bypass the Same Origin Policy and obtain sensitive information.
Configurations

Configuration 1 (hide)

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:53

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/89106 - () http://www.securityfocus.com/bid/89106 -
References () https://bugs.chromium.org/p/chromium/issues/detail?id=586820 - () https://bugs.chromium.org/p/chromium/issues/detail?id=586820 -
References () https://chromereleases.googleblog.com/2016/04/stable-channel-update_28.html - () https://chromereleases.googleblog.com/2016/04/stable-channel-update_28.html -
References () https://www.contextis.com//documents/2/Browser_Timing_Attacks.pdf - () https://www.contextis.com//documents/2/Browser_Timing_Attacks.pdf -

07 Nov 2023, 02:33

Type Values Removed Values Added
References (MISC) https://www.contextis.com//documents/2/Browser_Timing_Attacks.pdf - Technical Description, Third Party Advisory () https://www.contextis.com//documents/2/Browser_Timing_Attacks.pdf -
References (CONFIRM) https://bugs.chromium.org/p/chromium/issues/detail?id=586820 - Exploit, Third Party Advisory () https://bugs.chromium.org/p/chromium/issues/detail?id=586820 -
References (CONFIRM) https://chromereleases.googleblog.com/2016/04/stable-channel-update_28.html - Release Notes, Third Party Advisory () https://chromereleases.googleblog.com/2016/04/stable-channel-update_28.html -
References (BID) http://www.securityfocus.com/bid/89106 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/89106 -

Information

Published : 2017-04-21 20:59

Updated : 2024-11-21 02:53


NVD link : CVE-2016-5168

Mitre link : CVE-2016-5168

CVE.ORG link : CVE-2016-5168


JSON object : View

Products Affected

google

  • chrome
CWE
CWE-346

Origin Validation Error