Lucene search

K
redosRedosROS-20230920-03
HistorySep 20, 2023 - 12:00 a.m.

ROS-20230920-03

2023-09-2000:00:00
redos.red-soft.ru
13
vulnerability
google chrome
webp
image display
buffer
memory
exploitation
attacker
arbitrary code
remote execution
unix

8.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

0.609 Medium

EPSS

Percentile

97.8%

A vulnerability in the WebP image display module of the Google Chrome browser is related to reading outside the boundaries of the
buffer in memory. Exploitation of the vulnerability could allow an attacker acting remotely to execute
arbitrary code.

OSVersionArchitecturePackageVersionFilename
redos7.3x86_64libwebp<= 1.3.2-1UNKNOWN

8.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

0.609 Medium

EPSS

Percentile

97.8%