Candidate: CVE-2016-1671 PublicDate: 2016-05-14 21:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-1671 http://googlechromereleases.blogspot.ca/2016/05/stable-channel-update.html Description: Google Chrome before 50.0.2661.102 on Android mishandles / (slash) and \ (backslash) characters, which allows attackers to conduct directory traversal attacks via a file: URL, related to net/base/escape.cc and net/base/filename_util.cc. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Jann Horn Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N [8.1 HIGH] Patches_chromium-browser: upstream_chromium-browser: released (50.0.2661.102) precise_chromium-browser: ignored trusty_chromium-browser: released (50.0.2661.102-0ubuntu0.14.04.1.1117) trusty/esm_chromium-browser: DNE (trusty was released [50.0.2661.102-0ubuntu0.14.04.1.1117]) vivid/ubuntu-core_chromium-browser: DNE vivid/stable-phone-overlay_chromium-browser: DNE wily_chromium-browser: released (50.0.2661.102-0ubuntu0.15.10.1.1227) xenial_chromium-browser: released (50.0.2661.102-0ubuntu0.16.04.1.1237) devel_chromium-browser: released (50.0.2661.102-0ubuntu1.1242) Patches_oxide-qt: upstream_oxide-qt: not-affected precise_oxide-qt: DNE trusty_oxide-qt: not-affected trusty/esm_oxide-qt: DNE (trusty was not-affected) vivid/ubuntu-core_oxide-qt: DNE vivid/stable-phone-overlay_oxide-qt: not-affected wily_oxide-qt: not-affected xenial_oxide-qt: not-affected esm-infra/xenial_oxide-qt: not-affected devel_oxide-qt: released (1.14.9-0ubuntu1)