Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-17523
HistoryMar 13, 2023 - 12:00 a.m.

Google Chrome Crash reporting component buffer overflow vulnerability

2023-03-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
35
google chrome
buffer overflow
vulnerability
crash reporting component
untrusted input
remote attacker
sensitive information
process memory
html page

0.001 Low

EPSS

Percentile

43.0%

Google Chrome is a web browser from Google, Inc. A buffer overflow vulnerability exists in versions prior to Google Chrome 111.0.5563.64, which stems from a boundary error in the Crash reporting component when handling untrusted input. A remote attacker could exploit this vulnerability to obtain potentially sensitive information from process memory via a crafted HTML page.

CPENameOperatorVersion
google chrome <111.eq0.5563.64