CVE-2016-1656
published 2016-04-18CVE-2016-1656: The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified…
PriorityP338high7.5CVSS 3.0
AVNACLPRNUINSUCNIHAN
EPSS
1.46%
70.7th percentile
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | <= 49.0.2623.112 | — | |
| opensuse | leap | — | — |
| suse | linux_enterprise | — | — |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-g375-749q-973m: The download implementation in Google Chrome before 50
ghsa_unreviewed·2022-05-14
CVE-2016-1656 [HIGH] CWE-284 GHSA-g375-749q-973m: The download implementation in Google Chrome before 50
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
OSV
CVE-2016-1656: The download implementation in Google Chrome before 50
osv·2016-04-18·CVSS 7.5
CVE-2016-1656 [HIGH] CVE-2016-1656: The download implementation in Google Chrome before 50
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
Red Hat
chromium-browser: android downloaded file path restriction bypass
vendor_redhat·2016-04-13·CVSS 7.5
CVE-2016-1656 [HIGH] chromium-browser: android downloaded file path restriction bypass
chromium-browser: android downloaded file path restriction bypass
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-1656 chromium-browser: android downloaded file path restriction bypass
bugzilla·2016-04-14·CVSS 7.5
CVE-2016-1656 [HIGH] CVE-2016-1656 chromium-browser: android downloaded file path restriction bypass
CVE-2016-1656 chromium-browser: android downloaded file path restriction bypass
Android downloaded file path restriction bypass.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=570750
External References:
http://googlechromereleases.blogspot.com/2016/04/stable-channel-update_13.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:0638 https://rhn.redhat.com/errata/RHSA-2016-0638.html
Bugzilla
CVE-2016-2193 postgresql: row security policies in prepared statements disregard user ID changes
bugzilla·2016-03-21·CVSS 7.5
CVE-2016-2193 [HIGH] CVE-2016-2193 postgresql: row security policies in prepared statements disregard user ID changes
CVE-2016-2193 postgresql: row security policies in prepared statements disregard user ID changes
This vulnerability leads to potentially incorrect policies being applied in cases where role-specific policies are used and a given query is planned under one role and then executed under other roles, which could happen under security definer functions or when a common user and query is planned initially and then re-used across multiple SET ROLEs. Applying an incorrect policy may permit a user to complete otherwise-forbidden reads and modifications. This affects only databases that have used CREATE POLICY to define a row security policy.
Discussion:
Acknowledgments:
Name: the PostgreSQL project
Upstream: Ashutosh Bapat
---
External references:
http://www.postgresql.org/about/news/1656/
Bugzilla
CVE-2016-3065 postgresql: memory disclosure in pageinspect functions
bugzilla·2016-03-21·CVSS 9.1
CVE-2016-3065 [CRITICAL] CVE-2016-3065 postgresql: memory disclosure in pageinspect functions
CVE-2016-3065 postgresql: memory disclosure in pageinspect functions
A vulnerability was found in a way PostgreSQL uses pageinspect functions. Certain function arguments crashed the server or disclosed a few bytes of server memory. The viability of attacks that arrange for presence of confidential information in the disclosed bytes was not ruled out. This affects only databases that have used "CREATE EXTENSION pageinspect".
Discussion:
Acknowledgments:
Name: the PostgreSQL project
Upstream: Andreas Seltenreich
---
External references:
http://www.postgresql.org/about/news/1656/
---
Upstream commit:
http://git.postgresql.org/gitweb/?p=postgresql.git;a=commitdiff;h=bf78a6f107949fdfb513d1b45e30cefe04e09e4f
---
Only PostgreSQL 9.5 was affected, which is not yet part of any Red Hat p
http://googlechromereleases.blogspot.com/2016/04/stable-channel-update_13.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00040.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00041.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00049.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00050.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0638.htmlhttps://crbug.com/570750https://security.gentoo.org/glsa/201605-02http://googlechromereleases.blogspot.com/2016/04/stable-channel-update_13.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00040.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00041.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00049.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-04/msg00050.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0638.htmlhttps://crbug.com/570750https://security.gentoo.org/glsa/201605-02
2016-04-18
Published