Wind River Support Network

HomeDefectsLIN9-353
Acknowledged

LIN9-353 : Security Advisory - webkit - CVE-2016-1630

Created: Mar 14, 2016    Updated: May 29, 2018
Found In Version: unknown
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

The ContainerNode::parserRemoveChild function in WebKit/Source/core/dom/ContainerNode.cpp in Blink, as used in Google Chrome before 49.0.2623.75, mishandles widget updates, which makes it easier for remote attackers to bypass the Same Origin Policy via a crafted web site.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-1630

CVEs


Live chat
Online