High severity8.8NVD Advisory· Published May 14, 2016· Updated May 6, 2026
CVE-2016-1669
CVE-2016-1669
Description
The Zone::New function in zone.cc in Google V8 before 5.0.71.47, as used in Google Chrome before 50.0.2661.102, does not properly determine when to expand certain memory allocations, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via crafted JavaScript code.
Affected products
10cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*+ 2 more
- cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:15.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
- cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
22- googlechromereleases.blogspot.com/2016/05/stable-channel-update.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-05/msg00043.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-05/msg00050.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2016-06/msg00048.htmlnvd
- lists.opensuse.org/opensuse-updates/2016-07/msg00063.htmlnvd
- rhn.redhat.com/errata/RHSA-2016-1080.htmlnvd
- rhn.redhat.com/errata/RHSA-2017-0002.htmlnvd
- www.debian.org/security/2016/dsa-3590nvd
- www.securityfocus.com/bid/90584nvd
- www.securitytracker.com/id/1035872nvd
- www.ubuntu.com/usn/USN-2960-1nvd
- access.redhat.com/errata/RHSA-2017:0879nvd
- access.redhat.com/errata/RHSA-2017:0880nvd
- access.redhat.com/errata/RHSA-2017:0881nvd
- access.redhat.com/errata/RHSA-2017:0882nvd
- access.redhat.com/errata/RHSA-2018:0336nvd
- codereview.chromium.org/1945313002nvd
- crbug.com/606115nvd
- h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplaynvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CITS5GIUTNWVSUXMSORIAJJLQBEGL2CK/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZPTKXI62OPCJCJGCSFMST4HIBQ27J72W/nvd
- security.gentoo.org/glsa/201605-02nvd
News mentions
0No linked articles in our index yet.