Microsoft · Edge · CVE-2023-6350
**Name of the Vulnerable Software and Affected Versions**
Google Chrome versions prior to 119.0.6045.199
Microsoft Edge (affected versions not specified)
**Description**
The issue is related to a use after free in libavif, which can lead to heap corruption when processing crafted avif files. This can potentially allow a remote attacker to exploit the vulnerability, impacting the confidentiality, integrity, and availability of protected information. The estimated number of potentially affected devices worldwide is not provided.
**Recommendations**
For Google Chrome versions prior to 119.0.6045.199, update to version 119.0.6045.199 or later to resolve the issue.
For Microsoft Edge, at the moment, there is no information about a newer version that contains a fix for this vulnerability.