High severity8.8CISA KEVNVD Advisory· Published Jan 19, 2017· Updated Apr 21, 2026
CVE-2016-5198
CVE-2016-5198
Description
V8 in Google Chrome prior to 54.0.2840.90 for Linux, and 54.0.2840.85 for Android, and 54.0.2840.87 for Windows and Mac included incorrect optimisation assumptions, which allowed a remote attacker to perform arbitrary read/write operations, leading to code execution, via a crafted HTML page.
Affected products
4- cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- crbug.com/659475nvdExploitIssue Tracking
- rhn.redhat.com/errata/RHSA-2016-2672.htmlnvdThird Party Advisory
- www.securityfocus.com/bid/94079nvdBroken LinkThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1037224nvdBroken LinkThird Party AdvisoryVDB Entry
- chromereleases.googleblog.com/2016/11/stable-channel-update-for-desktop.htmlnvdRelease NotesVendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.