Exploitation Summary
EIP tracks 1 public exploit for CVE-2016-1655. PoCs published by OpenSISE.
AI-analyzed exploit summary The repository contains a minimal JavaScript snippet that removes a frame element, which is unrelated to the actual exploitation of CVE-2016-1655 (a UAF vulnerability in Adobe Flash). No functional exploit code is present.
Description
Google Chrome before 50.0.2661.75 does not properly consider that frame removal may occur during callback execution, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted extension.
Exploits (1)
The repository contains a minimal JavaScript snippet that removes a frame element, which is unrelated to the actual exploitation of CVE-2016-1655 (a UAF vulnerability in Adobe Flash). No functional exploit code is present.
References (11)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H