Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
Configuration 6 (hide)
|
Configuration 7 (hide)
|
Configuration 8 (hide)
|
History
31 Jul 2024, 18:19
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:microsoft:teams:1.6.00.26474:*:*:*:*:desktop:*:* cpe:2.3:a:microsoft:teams:1.6.00.26463:*:*:*:*:macos:*:* cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:* cpe:2.3:a:microsoft:webp_image_extension:1.0.62681.0:*:*:*:*:*:*:* |
|
First Time |
Microsoft webp Image Extension
Microsoft teams Microsoft edge Chromium |
27 Jun 2024, 18:36
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-12 15:15
Updated : 2024-07-31 18:19
NVD link : CVE-2023-4863
Mitre link : CVE-2023-4863
CVE.ORG link : CVE-2023-4863
JSON object : View
Products Affected
debian
- debian_linux
mozilla
- firefox_esr
- thunderbird
- firefox
microsoft
- webp_image_extension
- edge
- edge_chromium
- teams
- chrome
webmproject
- libwebp
netapp
- active_iq_unified_manager
bentley
- seequent_leapfrog
fedoraproject
- fedora
CWE
CWE-787
Out-of-bounds Write