PT-2019-4829 · Google+2 · Google Chrome+2

Published

2019-04-30

·

Updated

2025-10-24

·

CVE-2019-5825

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 73.0.3683.86
Description The issue is related to an out of bounds write in JavaScript, which can potentially lead to heap corruption. A remote attacker could exploit this via a crafted HTML page, potentially allowing for a denial of service.
Recommendations For versions prior to 73.0.3683.86, update to version 73.0.3683.86 or later to resolve the issue. As a temporary workaround, consider restricting access to potentially vulnerable JavaScript functions until a patch is applied.

Exploit

Fix

Use After Free

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2025_16880
ALT-PU-2019-1782
BDU:2020-01413
CVE-2019-5825
DSA-4500-1
MGASA-2019-0283
RHSA-2019:1021
RHSA-2019_1021

Affected Products

Alt Linux
Google Chrome
Red Hat