Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-1697
Description:The FrameLoader::startLoad function in WebKit/Source/core/loader/FrameLoader.cpp in Blink, as used in Google Chrome before 51.0.2704.79, does not prevent frame navigations during DocumentLoader detach operations, which allows remote attackers to bypass the Same Origin Policy via crafted JavaScript code.
Test IDs: 1.3.6.1.4.1.25623.1.0.703594  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-1697
Debian Security Information: DSA-3594 (Google Search)
http://www.debian.org/security/2016/dsa-3594
RedHat Security Advisories: RHSA-2016:1201
https://access.redhat.com/errata/RHSA-2016:1201
http://www.securitytracker.com/id/1036026
SuSE Security Announcement: SUSE-SU-2016:1490 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00004.html
SuSE Security Announcement: openSUSE-SU-2016:1489 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00003.html
SuSE Security Announcement: openSUSE-SU-2016:1496 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00005.html
http://www.ubuntu.com/usn/USN-2992-1




© 1998-2025 E-Soft Inc. All rights reserved.