Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Jun 22, 2022

CVE-2016-1646

High
EPSS 66.5%CISA KEV
Google/Chromium V8

Description

Google Chromium V8 Engine contains an out-of-bounds read vulnerability that allows a remote attacker to cause a denial of service or possibly have another unspecified impact via crafted JavaScript code. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

EPSS — Exploit Probability

66.5%

Higher than 98.5% of all CVEs

Required Action

https://nvd.nist.gov/vuln/detail/CVE-2016-1646

Risk Assessment

HIGH
In CISA KEV
High EPSS

Details

Severity
High
EPSS
66.5%
CISA KEV
Yes
Ransomware
Unknown
Articles
0

Timeline

Published

Jun 8, 2022

Added to KEV

Jun 8, 2022

Remediation Due

Jun 22, 2022

Affected Product

Google

Chromium V8

View all Google CVEs