RULE(RULE ID:321941)

Rule General Information
Release Date: 2019-06-25
Rule Name: Google Chrome Blink Component Integer Overflow Vulnerability (CVE-2016-5182)
Severity:
CVE ID:
Rule Protection Details
Description: Blink in Google Chrome prior to 54.0.2840.59 for Windows, Mac, and Linux; 54.0.2840.85 for Android had insufficient validation in bitmap handling, which allowed a remote attacker to potentially exploit heap corruption via crafted HTML pages.
Impact: An attacker can exploit the affected software with a integer overflow vulnerability. Successful exploit leads to execute arbitrary code, and failed exploit may disturb the software logic and cause denial of service.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityFocusBID:93528
http://rhn.redhat.com/errata/RHSA-2016-2067.html
https://chromereleases.googleblog.com/2016/10/stable-channel-update-for-desktop.html
https://crbug.com/638615
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://chromereleases.googleblog.com/2016/10/stable-channel-update-for-desktop.html