CVE-2016-1665
published 2016-05-14CVE-2016-1665: The JSGenericLowering class in compiler/js-generic-lowering.cc in Google V8, as used in Google Chrome before 50.0.2661.94, mishandles comparison operators…
PriorityP430medium6.5CVSS 3.0
AVNACLPRNUIRSUCHINAN
EPSS
1.81%
76.3th percentile
The JSGenericLowering class in compiler/js-generic-lowering.cc in Google V8, as used in Google Chrome before 50.0.2661.94, mishandles comparison operators, which allows remote attackers to obtain sensitive information via crafted JavaScript code.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | <= 50.0.2661.87 | — | |
| opensuse | opensuse | — | — |
| redhat | enterprise_linux_desktop_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary_eus | — | — |
| redhat | enterprise_linux_workstation_supplementary | — | — |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv8.8HIGH
vendor_ubuntu8.8HIGH
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-5h5r-42w9-8f8v: The JSGenericLowering class in compiler/js-generic-lowering
ghsa_unreviewed·2022-05-14
CVE-2016-1665 [MEDIUM] CWE-20 GHSA-5h5r-42w9-8f8v: The JSGenericLowering class in compiler/js-generic-lowering
The JSGenericLowering class in compiler/js-generic-lowering.cc in Google V8, as used in Google Chrome before 50.0.2661.94, mishandles comparison operators, which allows remote attackers to obtain sensitive information via crafted JavaScript code.
OSV
oxide-qt vulnerabilities
osv·2016-05-18·CVSS 8.8
CVE-2016-1660 [HIGH] oxide-qt vulnerabilities
oxide-qt vulnerabilities
An out of bounds write was discovered in Blink. If a user were tricked in
to opening a specially crafted website, an attacker could potentially
exploit this to cause a denial of service via renderer crash, or execute
arbitrary code. (CVE-2016-1660)
It was discovered that Blink assumes that a frame which passes same-origin
checks is local in some cases. If a user were tricked in to opening a
specially crafted website, an attacker could potentially exploit this to
cause a denial of service via renderer crash, or execute arbitrary code.
(CVE-2016-1661)
A use-after-free was discovered in the V8 bindings in Blink. If a user
were tricked in to opening a specially crafted website, an attacker could
potentially exploit this to cause a denial of service via renderer cras
OSV
CVE-2016-1665: The JSGenericLowering class in compiler/js-generic-lowering
osv·2016-04-29·CVSS 6.5
CVE-2016-1665 [MEDIUM] CVE-2016-1665: The JSGenericLowering class in compiler/js-generic-lowering
The JSGenericLowering class in compiler/js-generic-lowering.cc in Google V8, as used in Google Chrome before 50.0.2661.94, mishandles comparison operators, which allows remote attackers to obtain sensitive information via crafted JavaScript code.
Ubuntu
Oxide vulnerabilities
vendor_ubuntu·2016-05-18·CVSS 8.8
CVE-2016-1660 [HIGH] Oxide vulnerabilities
Title: Oxide vulnerabilities
Summary: Several security issues were fixed in Oxide.
An out of bounds write was discovered in Blink. If a user were tricked in
to opening a specially crafted website, an attacker could potentially
exploit this to cause a denial of service via renderer crash, or execute
arbitrary code. (CVE-2016-1660)
It was discovered that Blink assumes that a frame which passes same-origin
checks is local in some cases. If a user were tricked in to opening a
specially crafted website, an attacker could potentially exploit this to
cause a denial of service via renderer crash, or execute arbitrary code.
(CVE-2016-1661)
A use-after-free was discovered in the V8 bindings in Blink. If a user
were tricked in to opening a specially crafted website, an attacker could
potentially
Red Hat
chromium-browser: information leak in v8
vendor_redhat·2016-04-28·CVSS 6.5
CVE-2016-1665 [MEDIUM] chromium-browser: information leak in v8
chromium-browser: information leak in v8
The JSGenericLowering class in compiler/js-generic-lowering.cc in Google V8, as used in Google Chrome before 50.0.2661.94, mishandles comparison operators, which allows remote attackers to obtain sensitive information via crafted JavaScript code.
No detection rules found.
No public exploits indexed.
http://googlechromereleases.blogspot.com/2016/04/stable-channel-update_28.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-06/msg00048.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0707.htmlhttp://www.debian.org/security/2016/dsa-3564http://www.securityfocus.com/bid/89106http://www.ubuntu.com/usn/USN-2960-1https://codereview.chromium.org/1925463003https://crbug.com/606181https://security.gentoo.org/glsa/201605-02http://googlechromereleases.blogspot.com/2016/04/stable-channel-update_28.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-05/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2016-06/msg00048.htmlhttp://rhn.redhat.com/errata/RHSA-2016-0707.htmlhttp://www.debian.org/security/2016/dsa-3564http://www.securityfocus.com/bid/89106http://www.ubuntu.com/usn/USN-2960-1https://codereview.chromium.org/1925463003https://crbug.com/606181https://security.gentoo.org/glsa/201605-02
2016-05-14
Published