vulnerability

FreeBSD: VID-9118961b-9fa5-11e6-a265-3065ec8fd3ec (CVE-2016-5185): chromium -- multiple vulnerabilities

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Oct 31, 2016
Added
Nov 14, 2016
Modified
Dec 10, 2025

Description

Google Chrome Releases reports: 21 security fixes in this release, including: [645211] High CVE-2016-5181: Universal XSS in Blink. Credit to Anonymous [638615] High CVE-2016-5182: Heap overflow in Blink. Credit to Giwan Go of STEALIEN [645122] High CVE-2016-5183: Use after free in PDFium. Credit to Anonymous [630654] High CVE-2016-5184: Use after free in PDFium. Credit to Anonymous [621360] High CVE-2016-5185: Use after free in Blink. Credit to cloudfuzzer [639702] High CVE-2016-5187: URL spoofing. Credit to Luan Herrera [565760] Medium CVE-2016-5188: UI spoofing. Credit to Luan Herrera [633885] Medium CVE-2016-5192: Cross-origin bypass in Blink. Credit to [email protected] [646278] Medium CVE-2016-5189: URL spoofing. Credit to xisigr of Tencent's Xuanwu Lab [644963] Medium CVE-2016-5186: Out of bounds read in DevTools. Credit to Abdulrahman Alqabandi (@qab) [639126] Medium CVE-2016-5191: Universal XSS in Bookmarks. Credit to Gareth Hughes [642067] Medium CVE-2016-5190: Use after free in Internals. Credit to Atte Kettunen of OUSPG [639658] Low CVE-2016-5193: Scheme bypass. Credit to Yuyang ZHOU (martinzhou96) [654782] CVE-2016-5194: Various fixes from internal audits, fuzzing and other initiatives

Solutions

freebsd-upgrade-package-chromiumfreebsd-upgrade-package-chromium-npapifreebsd-upgrade-package-chromium-pulse
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.