CVE-2016-1644
WebKit/Source/core/layout/LayoutObject.cpp in Blink, as used in Google Chrome before 49.0.2623.87, does not properly restrict relayout scheduling, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a crafted HTML document.
Date published : 2016-03-13
http://www.securityfocus.com/bid/84224
http://googlechromereleases.blogspot.com/2016/03/stable-channel-update_8.html