PT-2018-2063 · Google+5 · Skia+6

Tran Tien Hung

·

Published

2018-09-13

·

Updated

2024-12-12

·

CVE-2018-18356

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 71.0.3578.80
Description The issue is caused by an integer overflow in path handling, leading to a use after free in the Skia library. This could allow a remote attacker to potentially exploit heap corruption via a crafted HTML page, impacting the confidentiality, integrity, and availability of protected information.
Recommendations For versions prior to 71.0.3578.80, update to version 71.0.3578.80 or later to resolve the issue. As a temporary workaround, consider restricting access to crafted HTML pages until the update is applied.

Exploit

Fix

Use After Free

Memory Corruption

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2879
ALT-PU-2019-1253
ALT-PU-2019-1254
ALT-PU-2019-1269
BDU:2019-00013
CESA-2019_0373
CESA-2019_0374
CESA-2019_0680
CESA-2019_0681
CESA-2019_1144
CVE-2018-18356
DLA-1677-1
DLA-1678-1
DSA-4352-1
DSA-4391-1
DSA-4392-1
MGASA-2019-0088
MGASA-2019-0089
OPENSUSE-SU-2018:4143-1
OPENSUSE-SU-2018_4056-1
OPENSUSE-SU-2018_4142-1
OPENSUSE-SU-2019:0248-1
OPENSUSE-SU-2019:0249-1
OPENSUSE-SU-2019:0251-1
OPENSUSE-SU-2019:1162-1
OPENSUSE-SU-2019_0202-1
OPENSUSE-SU-2019_0248-1
OPENSUSE-SU-2019_0250-1
OPENSUSE-SU-2019_0251-1
OPENSUSE-SU-2019_1162-1
OPENSUSE-SU-2024:10600-1
OPENSUSE-SU-2024:10601-1
OPENSUSE-SU-2024:10681-1
OPENSUSE-SU-2024:12948-1
OPENSUSE-SU-2024:14572-1
RHSA-2018:3803
RHSA-2018_3803
RHSA-2019:0373
RHSA-2019:0374
RHSA-2019:0680
RHSA-2019:0681
RHSA-2019:1144
RHSA-2019_0373
RHSA-2019_0374
RHSA-2019_0680
RHSA-2019_0681
RHSA-2019_1144
SUSE-SU-2019:0469-1
SUSE-SU-2019:0852-1
SUSE-SU-2019:0853-1
SUSE-SU-2019:0871-1
USN-3896-1
USN-3897-1

Affected Products

Alt Linux
Centos
Google Chrome
Red Hat
Skia
Suse
Ubuntu