PT-2019-5075 · Google+3 · Google Chrome+3

Wenxiang Qian

·

Publicado

2019-06-04

·

Atualizado

2024-06-15

·

CVE-2019-5835

CVSS v2.0

7.1

Alta

VetorAV:N/AC:M/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 75.0.3770.80
Description The issue is related to object lifecycle errors in the SwiftShader high-performance rendering system of Google Chrome. It allows a remote attacker to potentially perform out of bounds memory access via a crafted HTML page, which could lead to access of confidential data.
Recommendations For versions prior to 75.0.3770.80, update to version 75.0.3770.80 or later to resolve the issue. As a temporary workaround, consider restricting access to potentially vulnerable HTML pages until the update is applied.

Exploit

Correção

Out of bounds Read

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2019-2410
ALT-PU-2019-2502
BDU:2020-01723
CVE-2019-5835
MGASA-2019-0283
OPENSUSE-SU-2019:1557-1
OPENSUSE-SU-2019:1558-1
OPENSUSE-SU-2019:1666-1
OPENSUSE-SU-2019_1557-1
OPENSUSE-SU-2019_1558-1
OPENSUSE-SU-2019_1559-1
OPENSUSE-SU-2019_1666-1
OPENSUSE-SU-2024:10681-1
OPENSUSE-SU-2024:12948-1
RHSA-2019:1477
RHSA-2019_1477

Produtos afetados

Alt Linux
Google Chrome
Red Hat
Suse