6.8
CVSSv2

CVE-2018-6086

Published: 04/12/2018 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

A double-eviction in the Incognito mode cache that lead to a user-after-free in Networking Disk Cache in Google Chrome before 66.0.3359.117 allowed a remote malicious user to execute arbitrary code via a crafted HTML page.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

redhat linux desktop 6.0

redhat linux workstation 6.0

redhat linux server 6.0

debian debian linux 8.0

debian debian linux 9.0

Vendor Advisories

Synopsis Critical: chromium-browser security update Type/Severity Security Advisory: Critical Topic An update for chromium-browser is now available for Red Hat Enterprise Linux 6 SupplementaryRed Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scor ...
Several vulnerabilities have been discovered in the chromium web browser CVE-2018-6056 lokihardt discovered an error in the v8 javascript library CVE-2018-6057 Gal Beniamini discovered errors related to shared memory permissions CVE-2018-6060 Omair discovered a use-after-free issue in blink/webkit CVE-2018-6061 Guang Gong disco ...
A double-eviction in the Incognito mode cache that lead to a user-after-free in Networking Disk Cache in Google Chrome prior to 6603359117 allowed a remote attacker to execute arbitrary code via a crafted HTML page ...
A use-after-free vulnerability has been found in the Disk Cache component of the Chromium browser before 6603359117 ...