Candidate: CVE-2016-5138 PublicDate: 2016-08-01 02:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-5138 http://googlechromereleases.blogspot.com/2016/07/stable-channel-update-for-chrome-os_26.html https://bugs.chromium.org/p/chromium/issues/detail?id=631752&desc=2 https://chromium.googlesource.com/chromiumos/third_party/kernel/+/d65f7c158dabbb5b9e89723aceb30e874c2d748a Description: Integer overflow in the kbasep_vinstr_attach_client function in midgard/mali_kbase_vinstr.c in Google Chrome before 52.0.2743.85 allows remote attackers to cause a denial of service (heap-based buffer overflow and use-after-free) by leveraging an unrestricted multiplication. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H [8.8 HIGH] Patches_chromium-browser: upstream_chromium-browser: released (52.0.2743.85) precise_chromium-browser: ignored trusty_chromium-browser: not-affected trusty/esm_chromium-browser: DNE (trusty was not-affected) vivid/ubuntu-core_chromium-browser: DNE vivid/stable-phone-overlay_chromium-browser: DNE wily_chromium-browser: ignored (reached end-of-life) xenial_chromium-browser: not-affected devel_chromium-browser: not-affected Patches_oxide-qt: upstream_oxide-qt: not-affected precise_oxide-qt: DNE trusty_oxide-qt: not-affected trusty/esm_oxide-qt: DNE (trusty was not-affected) vivid/ubuntu-core_oxide-qt: DNE vivid/stable-phone-overlay_oxide-qt: not-affected wily_oxide-qt: ignored (reached end-of-life) xenial_oxide-qt: not-affected esm-infra/xenial_oxide-qt: not-affected devel_oxide-qt: not-affected