CVE-2016-1636

EUVD-2016-2731
The PendingScript::notifyFinished function in WebKit/Source/core/dom/PendingScript.cpp in Google Chrome before 49.0.2623.75 relies on memory-cache information about integrity-check occurrences instead of integrity-check successes, which allows remote attackers to bypass the Subresource Integrity (aka SRI) protection mechanism by triggering two loads of the same resource.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.8 CRITICAL
NETWORK
LOW
NONE
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 80%
Affected Products (NVD)
VendorProductVersion
googlechrome
𝑥
≤ 48.0.2564.116
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
chromium-browser
precise
ignored
trusty
Fixed 49.0.2623.87-0ubuntu0.14.04.1.1112
released
wily
Fixed 49.0.2623.87-0ubuntu0.15.10.1.1222
released
oxide-qt
precise
dne
trusty
Fixed 1.13.6-0ubuntu0.14.04.1
released
wily
Fixed 1.13.6-0ubuntu0.15.10.1
released
Common Weakness Enumeration