Security Advisory

CVE-2016-1634

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-03-06 02:00:00
Last updated 2024-08-05 23:02:12
Assigner Chrome
CVSS score not scored
State PUBLISHED

Description

Use-after-free vulnerability in the StyleResolver::appendCSSStyleSheet function in WebKit/Source/core/css/resolver/StyleResolver.cpp in Blink, as used in Google Chrome before 49.0.2623.75, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted web site that triggers Cascading Style Sheets (CSS) style invalidation during a certain subtree-removal action.