8.8
CVSSv3

CVE-2023-1220

Published: 07/03/2023 Updated: 10/04/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

Heap buffer overflow in UMA in Google Chrome before 111.0.5563.64 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google chrome

Vendor Advisories

Multiple security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure For the stable distribution (bullseye), these problems have been fixed in version 1110556364-1~deb11u1 We recommend that you upgrade your chromium packages For the detailed security status of ...
 LTS-108 is being updated in the LTS channel to 10805359224 (Platform Version: 15183860) for most ChromeOS devices Want to know more about Long Term Support? Click hereThis update contains multiple Security fixes, including:1415366 Critical CVE-2023-0941 Use after free in Prompts1417176 High  ...
The Chrome team is delighted to announce the promotion of Chrome 111 to the stable channel for Windows, Mac and Linux This will roll out over the coming days/weeksChrome 1110556364 (Linux and Mac), 1110556364/65( Windows) contains a number of fixes and improvements -- a list of changes is available in the log Watch out ...