Race condition in the ResourceDispatcherHostImpl::BeginRequest function in content/browser/loader/resource_dispatcher_host_impl.cc in Google Chrome before 50.0.2661.102 allows remote attackers to make arbitrary HTTP requests by leveraging access to a renderer process and reusing a request ID.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published: 2016-05-14T21:00:00

Updated: 2024-08-05T23:02:12.981Z

Reserved: 2016-01-12T00:00:00

Link: CVE-2016-1670

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2016-05-14T21:59:10.383

Modified: 2024-11-21T02:46:51.337

Link: CVE-2016-1670

cve-icon Redhat

Severity : Moderate

Publid Date: 2016-05-11T00:00:00Z

Links: CVE-2016-1670 - Bugzilla