Security Advisory

CVE-2016-5224

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-01-19 05:43:00
Last updated 2024-08-06 00:53:48
Assigner Chrome
State PUBLISHED

Description

A timing attack on denormalized floating point arithmetic in SVG filters in Blink in Google Chrome prior to 55.0.2883.75 for Mac, Windows and Linux, and 55.0.2883.84 for Android allowed a remote attacker to bypass the Same Origin Policy via a crafted HTML page.