Lucene search

K
zdiKdotZDI-16-700
HistoryAug 23, 2017 - 12:00 a.m.

Google Chrome PDFium JPEG Out-Of-Bounds Read Information Disclosure Vulnerability

2017-08-2300:00:00
kdot
www.zerodayinitiative.com
8

0.008 Low

EPSS

Percentile

81.4%

This vulnerability allows an attacker to leak sensitive information on vulnerable installations of Google Chrome. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of JPEG images. A specially crafted JPEG image embedded inside a PDF can force Google Chrome to read memory past the end of an allocated object. An attacker can leverage this vulnerability to disclose the contents of adjacent memory.

0.008 Low

EPSS

Percentile

81.4%