PT-2018-3230 · Opera+4 · Opera+5

Published

2018-05-10

·

Updated

2024-06-15

·

CVE-2018-6122

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 66.0.3359.139
Description The issue is related to a type confusion in WebAssembly in Google Chrome, which could allow a remote attacker to potentially exploit heap corruption via a crafted HTML page. This is due to a type confusion vulnerability in the V8 JavaScript engine, which may enable an attacker to execute arbitrary code. The vulnerability affects Google Chrome and potentially other browsers like Opera.
Recommendations For Google Chrome versions prior to 66.0.3359.139, update to version 66.0.3359.139 or later to resolve the issue.

Fix

Type Confusion

Incorrect Type Conversion or Cast

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-1959
BDU:2019-04391
CVE-2018-6122
DSA-4237-1
MGASA-2018-0268
OPENSUSE-SU-2018:1175-1
OPENSUSE-SU-2018:1437-1
OPENSUSE-SU-2018_1275-1
OPENSUSE-SU-2024:10681-1
OPENSUSE-SU-2024:12948-1
RHSA-2018:1446
RHSA-2018_1446

Affected Products

Alt Linux
Google Chrome
Opera
Red Hat
Suse
V8 Javascript Engine