Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-43874
HistoryMay 18, 2023 - 12:00 a.m.

Google Chrome DevTools memory misreference vulnerability (CNVD-2023-43874)

2023-05-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
google chrome
web browser
memory misreference
vulnerability
devtools
heap corruption
html page
cnvd-2023-43874

0.003 Low

EPSS

Percentile

71.3%

Google Chrome is a web browser from Google, an American company. A memory misreference vulnerability exists in versions prior to Google Chrome 113.0.5672.126, which stems from a confusion in the DevTools instruction responsible for freeing memory. An attacker could use this vulnerability to potentially exploit heap corruption via a crafted HTML page.

CPENameOperatorVersion
google chrome <113.eq0.5672.126