CVE-2016-1632

Source
https://cve.org/CVERecord?id=CVE-2016-1632
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-1632.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2016-1632
Downstream
Related
Published
2016-03-06T02:59:03.387Z
Modified
2026-03-10T13:57:21.371310Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

The Extensions subsystem in Google Chrome before 49.0.2623.75 does not properly maintain own properties, which allows remote attackers to bypass intended access restrictions via crafted JavaScript code that triggers an incorrect cast, related to extensions/renderer/v8_helpers.h and gin/converter.h.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2016-1632.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "48.0.2564.116"
            }
        ]
    }
]