Lucene search

K
gitlabHttps://gitlab.com/gitlab-org/security-products/gemnasium-dbGITLAB-A6FFB9F3D7960F9C55FDAFF461C16A8C
HistorySep 21, 2023 - 12:00 a.m.

CefSharp affected by heap buffer overflow in WebP

2023-09-2100:00:00
https://gitlab.com/gitlab-org/security-products/gemnasium-db
gitlab.com
23
google
cefsharp
heap buffer overflow
webp
vulnerability
remote attacker
out-of-bounds memory write
html page
exploit
cve-2023-4863
chromium
severity
critical
patch

0.609 Medium

EPSS

Percentile

97.8%

Google is aware that an exploit for CVE-2023-4863 exists in the wild.

Description

Heap buffer overflow in WebP in Google Chrome prior to 116.0.5845.187 allowed a remote attacker to perform an out-of-bounds memory write via a crafted HTML page. (Chromium security severity: Critical)

References

CPENameOperatorVersion
nuget/cefsharp.commonlt116.0.230