Related Vulnerabilities: CVE-2017-15423  

An information disclosure issue has been found in the SPAKE implementation of the BoringSSL component of the Chromium browser before 63.0.3239.84.

Severity Low

Remote Yes

Type Information disclosure

Description

An information disclosure issue has been found in the SPAKE implementation of the BoringSSL component of the Chromium browser before 63.0.3239.84.

AVG-544 chromium 62.0.3202.94-2 63.0.3239.84-1 Critical Fixed

07 Dec 2017 ASA-201712-5 AVG-544 chromium Critical multiple issues

https://chromereleases.googleblog.com/2017/12/stable-channel-update-for-desktop.html
https://github.com/google/boringssl/commit/696c13bd6ab78011adfe7b775519c8b7cc82b604
https://crbug.com/778101