browser/extensions/api/dial/dial_registry.cc in Google Chrome before 54.0.2840.98 on macOS, before 54.0.2840.99 on Windows, and before 54.0.2840.100 on Linux neglects to copy a device ID before an erase() call, which causes the erase operation to access data that that erase operation will destroy.
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Information
Published : 2019-10-25 08:15
Updated : 2021-09-08 10:22
NVD link : CVE-2016-5202
Mitre link : CVE-2016-5202
JSON object : View
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource
Products Affected
microsoft
- windows
linux
- linux_kernel
- chrome
apple
- macos