8.8
CVSSv3

CVE-2023-0129

Published: 10/01/2023 Updated: 25/11/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Heap buffer overflow in Network Service in Google Chrome before 109.0.5414.74 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page and specific interactions. (Chromium security severity: High)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Vendor Advisories

Multiple security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure For the stable distribution (bullseye), this problem has been fixed in version 1090541474-2~deb11u1 We recommend that you upgrade your chromium packages For the detailed security status of ch ...
A new version of  LTS Candidate, LTC-108, 10805359221 (Platform Version: 151838240),  is being rolled out for most ChromeOS devices Release notes for LTC-108 can be found here Want to know more about Long-term Support? Click here This update contains multiple Security Fixes, including:13 ...
The Chrome team is delighted to announce the promotion of Chrome 109 to the stable channel for Windows, Mac and Linux This will roll out over the coming days/weeksChrome 1090541474 (linux),1090541474/75( Windows) and 1090541487(Mac)  contains a number of fixes and improvements -- a list of changes is available i ...
LTS-102 is being updated in the LTS channel to 10205005196 (Platform Version: 1469517820) for most ChromeOS devices Want to know more about Long Term Support? Click hereThis update contains multiple Security fixes, including:1382033  High CVE-2023-0129 Heap buffer overflow in Network Service1376354&nbs ...