The LoadIC::UpdateCaches function in ic/ic.cc in Google V8, as used in Google Chrome before 48.0.2564.82, does not ensure receiver compatibility before performing a cast of an unspecified variable, which allows remote attackers to cause a denial of service or possibly have unknown other impact via crafted JavaScript code.
References
Configurations
Information
Published : 2016-01-25 03:59
Updated : 2016-12-07 10:32
NVD link : CVE-2016-1612
Mitre link : CVE-2016-1612
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
- chrome