Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-43885
HistoryApr 21, 2023 - 12:00 a.m.

Google Chrome Buffer Overflow Vulnerability (CNVD-2023-43885)

2023-04-2100:00:00
China National Vulnerability Database
www.cnvd.org.cn
12
google chrome
buffer overflow
vulnerability
service worker api
remote attack
heap corruption
html pages
targeted attack
system compromise

0.002 Low

EPSS

Percentile

64.4%

Google Chrome is a web browser from Google, an American company. Google Chrome has a security vulnerability in versions prior to 112.0.5615.137. The vulnerability is due to the Service Worker API in the affected version allows remote attackers to potentially exploit heap corruption via specially crafted HTML pages. An attacker could use this vulnerability to launch a targeted attack against a target and compromise the security of a site’s system.

CPENameOperatorVersion
google chrome <112.eq0.5615.137